Security Advisory

CVE-2004-2488

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-10-25 04:00:00
Last updated 2024-08-08 01:29:13
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in Nexgen FTP Server before 2.2.3.23 allows remote authenticated users to read or list arbitrary files via "C:" sequences in the (1) RETR (get), (2) NLST (ls), (3) LIST (ls), (4) RNFR, or (5) RNTO FTP commands.