CVE-2001-0054

Publication date

2001-05-07 04:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbitrary files by appending a string such as "/..%20." to a CD command, a variant of a .. (dot dot) attack.