CVE-2006-5950
Unspecified vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote authenticated users to obtain the installation path via unknown vectors related to the REN command, probably due to response messages.
Does this matter?
Lower severity and a low EPSS score (1.34%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote authenticated users to obtain the installation path via unknown vectors related to the REN command, probably due to response messages. NOTE: the provenance of this information is unknown; details are obtained from third party sources.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.34% probability · 70th percentile
- CISA KEV
- Not listed
- Affected
- altools/alftp ftp server
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/22874Vendor Advisory
- http://www.securityfocus.com/bid/21058Vendor Advisory
- http://www.vupen.com/english/advisories/2006/4518
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30281
- http://secunia.com/advisories/22874Vendor Advisory
- http://www.securityfocus.com/bid/21058Vendor Advisory
- http://www.vupen.com/english/advisories/2006/4518
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30281
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.