CVE

Id
12446  
CVE No.
CVE-2005-1240  
Status
Candidate  
Description
Directory traversal vulnerability in the third party tool from Castlehill, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request.  
Phase
Assigned (20050424)  
Votes
None (candidate not yet proposed)  
Comments