Security Advisory

CVE-2003-1380

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-10-19 10:00:00
Last updated 2024-08-08 02:28:02
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an 'ls @../' command, or (2) list files above the root via a "mget @../FILE" command.