CVE
- Id
- 3565
- CVE No.
- CVE-2001-0758
- Status
- Candidate
- Description
- Directory traversal vulnerability in Shambala 4.5 allows remote attackers to escape the FTP root directory via "CWD ..." command.
- Phase
- Proposed (20011012)
- Votes
- MODIFY(1) Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall
- Comments
- Frech> XF:shambala-ftp-cwd-directory-traversal(7418) | Christey> Other .. problems were found in 4.5 as described in: | BUGTRAQ:20020530 [[ TH 026 Inc. ]] SA #3 - Shambala Server 4.5, Directory Traversal and DoS | URL:http://archives.neohapsis.com/archives/bugtraq/2002-05/0282.html | CD:SF-LOC might suggest merging these two. (I"m working | on creating a CAN for the newer discovery).