Back to search
CVE-2004-2747
Published: Nov 8, 2007
Modified: Aug 8, 2024
PUBLISHED
Description
Directory traversal vulnerability in Pablo Software Solutions Quick 'n Easy FTP Server 1.77, and possibly earlier versions, allows remote authenticated users to determine the existence of arbitrary files via a .. (dot dot) in the DEL command, which triggers different error messages depending on whether the file exists or not.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1008756
vdb-entry
x_refsource_SECTRACK
20040118 Pablo Sofware Solutions FTP server can detect if a file exists outside the FTP root directory
mailing-list
x_refsource_BUGTRAQ
10661
third-party-advisory
x_refsource_SECUNIA
9443
vdb-entry
x_refsource_BID
3574
vdb-entry
x_refsource_OSVDB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now