First published: Tue Sep 23 1997(Updated: )
Race condition in wu-ftpd and BSDI ftpd allows remote attackers to gain root access via the SITE EXEC command.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
wu-ftpd | =2.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0955 is considered to have a critical severity rating due to the potential for remote attackers to gain root access.
To fix CVE-1999-0955, it is recommended to upgrade to a newer version of wu-ftpd that is not vulnerable, as well as disabling the SITE EXEC command if possible.
The only known affected version for CVE-1999-0955 is wu-ftpd 2.4.1.
Any system running the vulnerable version of wu-ftpd is at risk, particularly those exposed to the Internet.
CVE-1999-0955 is classified as a race condition vulnerability that allows remote code execution.