First published: Mon Mar 10 2008(Updated: )
Absolute path traversal vulnerability in the FTP server in MicroWorld eScan Corporate Edition 9.0.742.98 and eScan Management Console (aka eScan Server) 9.0.742.1 allows remote attackers to read arbitrary files via an absolute pathname in the RETR (get) command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microworld Technologies Escan Server | =9.0.742.1 | |
Microworld Technologies Escan Management Console | =9.0.742.1 | |
MicroWorld eScan Antivirus | =9.0.742.98 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1221 is classified as a medium severity vulnerability due to its potential for unauthorized file access.
To fix CVE-2008-1221, it is recommended to update to a patched version of the MicroWorld eScan software or apply relevant security configurations.
CVE-2008-1221 is an absolute path traversal vulnerability that allows remote attackers to read arbitrary files.
CVE-2008-1221 affects MicroWorld eScan Corporate Edition 9.0.742.98 and eScan Management Console 9.0.742.1.
Yes, CVE-2008-1221 can be exploited remotely through the FTP server's RETR command.