Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".# CVE-2001-0933
Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".
Securiteam publication at http://www.securiteam.com/exploits/6D00L2A35K.html <br>
External info at https://marc.info/?l=bugtraq&m=100698397818175&w=2 <br>
Cisco reference at https://tools.cisco.com/security/center/viewAlert.x?alertId=2884 </br>
# Author
Alex Hernandez aka <em><a href="https://twitter.com/_alt3kx_" rel="nofollow">(@\_alt3kx\_)</a></em>
[4.0K] /data/pocs/1f98e75b6c160818b2f8ccc481bc0bb3697b0f66
├── [2.8K] CVE-2001-0933.txt
├── [ 34K] LICENSE
└── [ 555] README.md
0 directories, 3 files