ZDI-24-1184: Progress Software WS_FTP Directory Traversal Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Progress Software WSFTP. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.3. The following CVEs are assigned: CVE-2024-7744.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1184?
The vulnerability ZDI-24-1184 has a CVSS rating of 4.3, indicating moderate severity.
How can I mitigate ZDI-24-1184?
To mitigate vulnerability ZDI-24-1184, ensure that you apply the latest security patches provided by Progress Software for WS_FTP.
What is the nature of the vulnerability ZDI-24-1184?
ZDI-24-1184 is a vulnerability that allows remote attackers to disclose sensitive information on affected installations of Progress Software WS_FTP.
Is authentication required to exploit ZDI-24-1184?
Yes, authentication is required to exploit vulnerability ZDI-24-1184.
Which software is affected by ZDI-24-1184?
The affected software for vulnerability ZDI-24-1184 is Progress Software WS_FTP.