First published: Fri Nov 30 2001(Updated: )
wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Washington University Wu-ftpd | =2.5.0 | |
David Madore Ftpd-bsd | =0.3.2 | |
Washington University Wu-ftpd | =2.6.0 | |
David Madore Ftpd-bsd | =0.3.3 | |
Washington University Wu-ftpd | =2.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.