2 results (0.002 seconds)

CVSS: 7.5EPSS: 12%CPEs: 7EXPL: 1

wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress. • https://www.exploit-db.com/exploits/20563 http://www.debian.org/security/2003/dsa-377 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands. • https://www.cve.org/CVERecord?id=CVE-1999-0202 •