CVE-2000-0044: Critical severity Jgaa Warftpd vulnerability
Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Warftpdfrom your environment.Uninstall Warftpd or stop/disable the Warftpd service for installations of the affected versions (1.70 and 1.67b2) if the software is not required.
- Compensating control
Until a vendor patch/fixed version is available, restrict access to the FTP service (e.g., firewall rules, host-based ACLs, network segmentation) to only trusted management IPs and networks, or isolate the server from untrusted networks.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0044?
CVE-2000-0044 is considered a high severity vulnerability due to its potential for unauthorized file access and command execution.
How do I fix CVE-2000-0044?
To fix CVE-2000-0044, users should upgrade to a version of War FTP that is not vulnerable, specifically above 1.70b.
What software is affected by CVE-2000-0044?
CVE-2000-0044 affects War FTP versions 1.67b2 and 1.70b.
Can CVE-2000-0044 be exploited remotely?
Yes, CVE-2000-0044 can be exploited by remote attackers to read files or execute commands.
What types of attacks are possible with CVE-2000-0044?
Attackers can leverage CVE-2000-0044 to perform unauthorized file reads and execute arbitrary commands on the affected system.