Security Advisory

CVE-2019-12144

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-06-11 20:55:50
Last updated 2024-08-04 23:10:30
Assigner mitre
State PUBLISHED

Description

An issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1. Attackers have the ability to abuse a path traversal vulnerability using the SCP protocol. Attackers who leverage this flaw could also obtain remote code execution by crafting a payload that abuses the SITE command feature.