Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. A directory traversal vulnerability exists using the SIZE command along with a \..\..\ substring, allowing an attacker to enumerate file existence based on the returned information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CoreFTP SFTP Server/FTP Server 路径遍历漏洞
Vulnerability Description
CoreFTP SFTP Server/FTP Server是一款文件传输服务器。 CoreFTP Server FTP/SFTP Server 2 build 674版本中存在路径遍历漏洞。攻击者可借助‘....’序列利用该漏洞浏览根目录之外的位置,确定所存在的文件。
CVSS Information
N/A
Vulnerability Type
N/A