First published: Thu Nov 30 1995(Updated: )
Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Washington University Wu-ftpd | =2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.