exploit-db-mirror/platforms/windows/remote/22112.txt
Offensive Security 5e2fc10125 DB: 2016-09-03
2016-09-03 13:13:25 +00:00

7 lines
No EOL
494 B
Text
Executable file

source: http://www.securityfocus.com/bid/6492/info
It has been reported that PlatinumFTPserver fails to properly sanitize some FTP commands. By sending a malicious request to the vulnerable server, using directory traversal sequences, it is possible for a remote attacker to obtain information about sensitive resources located outside of the FTP root.
Disclosure of sensitive system files may aid the attacker in launching further attacks against the target system.
dir ..\..\..\..\