CVE-1999-0081: Medium severity washington university wu-ftpd vulnerability
wu-ftp allows files to be overwritten via the rnfr command.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
wu-ftpdfrom your environment.Uninstall the wu-ftpd package if it is not required.
- Compensating control
Restrict network access to the FTP service (e.g., block or limit port 21) to trusted IPs or internal networks using firewall rules or ACLs until a patch or fixed version is available.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0081?
CVE-1999-0081 is classified as a moderate severity vulnerability due to its impact on file integrity.
How do I fix CVE-1999-0081?
To fix CVE-1999-0081, upgrade to the latest version of wu-ftpd that has addressed this vulnerability.
What systems are affected by CVE-1999-0081?
CVE-1999-0081 affects systems running all versions of wu-ftpd.
What is the impact of CVE-1999-0081?
The impact of CVE-1999-0081 allows unauthorized users to overwrite files on the server.
Is there a workaround for CVE-1999-0081?
A temporary workaround for CVE-1999-0081 is to configure the server to prevent the use of the rnfr command.