CVE-2006-5947
Multiple directory traversal vulnerabilities in Conxint FTP Server 2.2.0603, and possibly earlier, allow remote attackers to read arbitrary files and list arbitrary directories via directory traversal sequences in (1) DIR (LIST or NLST) and (2) GET…
Does this matter?
Lower severity and a low EPSS score (1.59%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple directory traversal vulnerabilities in Conxint FTP Server 2.2.0603, and possibly earlier, allow remote attackers to read arbitrary files and list arbitrary directories via directory traversal sequences in (1) DIR (LIST or NLST) and (2) GET (RETR) commands. NOTE: the provenance of this information is unknown; details are obtained from third party sources.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.59% probability · 74th percentile
- CISA KEV
- Not listed
- Affected
- conxint/conxint ftp server
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/22893Vendor Advisory
- http://www.securityfocus.com/bid/21081
- http://www.vupen.com/english/advisories/2006/4519
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30295
- http://secunia.com/advisories/22893Vendor Advisory
- http://www.securityfocus.com/bid/21081
- http://www.vupen.com/english/advisories/2006/4519
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30295
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.