CVE-2003-0392: Medium severity ST FTP Service vulnerability
Directory traversal vulnerability in ST FTP Service 3.0 allows remote attackers to list arbitrary directories via a CD command with a DoS drive letter argument (e.g. E:).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0392?
CVE-2003-0392 is considered a medium severity vulnerability due to its potential for exploitation via directory traversal.
How do I fix CVE-2003-0392?
To mitigate CVE-2003-0392, upgrade ST FTP Service to a version later than 3.0 that addresses this directory traversal vulnerability.
What does CVE-2003-0392 allow an attacker to do?
CVE-2003-0392 allows remote attackers to list arbitrary directories by exploiting a directory traversal vulnerability in ST FTP Service 3.0.
Is CVE-2003-0392 found in other versions of ST FTP Service?
CVE-2003-0392 specifically affects ST FTP Service version 3.0, so other versions may not be impacted.
What command is used to exploit CVE-2003-0392?
An attacker can exploit CVE-2003-0392 by issuing a CD command with a DoS drive letter argument, such as 'E:,' to list directories.