CVE
- Id
- 52712
- CVE No.
- CVE-2011-4800
- Status
- Candidate
- Description
- Directory traversal vulnerability in Serv-U FTP Server before 11.1.0.5 allows remote authenticated users to read and write arbitrary files, and list and create arbitrary directories, via a "..:/" (dot dot colon forward slash) in the (1) list, (2) put, or (3) get commands.
- Phase
- Assigned (20111213)
- Votes
- None (candidate not yet proposed)
- Comments