积极预防 及时发现
快速响应 力保恢复
当FTP转换激活时,wu-ftp允许攻击者通过一个畸形文件名来执行命令,这一文件名作为执行转换如压缩...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-19990997 CVE编号:CVE-1999-0997 安全级别:中 漏洞中文描述: 当FTP转换激活时,wu-ftp允许攻击者通过一个畸形文件名来执行命令,这一文件名作为执行转换如压缩或解压缩的程序的参数。 漏洞英文描述: wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress. 漏洞参考: 系统类型:其他 漏洞类型:其他