Page 11 of 55 results (0.006 seconds)

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 0

wu-ftp allows files to be overwritten via the rnfr command. • https://www.cve.org/CVERecord?id=CVE-1999-0081 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands. • https://www.cve.org/CVERecord?id=CVE-1999-0202 •

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 0

PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password. • http://www.osvdb.org/5742 •

CVSS: 4.6EPSS: 0%CPEs: 3EXPL: 0

Pine before version 3.94 allows local users to gain privileges via a symlink attack on a lockfile that is created when a user receives new mail. • http://marc.info/?l=bugtraq&m=87602167419803&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/416 •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command. • https://archive.nanog.org/mailinglist/mailarchives/old_archive/1995-11/msg00385.html •