VulnerabilityModified
CVE-2001-0450
Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a ..
MEDIUM 6.4EPSS 1.66%
Does this matter?
Lower severity and a low EPSS score (1.66%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.
- CVSS 2.0
- 6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
- EPSS
- 1.66% probability · 75th percentile
- CISA KEV
- Not listed
- Affected
- transsoft/broker ftp server
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2001-02/0533.htmlVendor Advisory
- http://www.ftp-broker.com/cgibin/Pageexe.exe?H=4143&P=0&C=0Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6189
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6190
- http://archives.neohapsis.com/archives/bugtraq/2001-02/0533.htmlVendor Advisory
- http://www.ftp-broker.com/cgibin/Pageexe.exe?H=4143&P=0&C=0Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6189
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6190
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.