Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.# CVE-2001-0934
Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.
Securiteam publication at http://www.securiteam.com/exploits/6D00L2A35K.html <br>
External info at https://marc.info/?l=bugtraq&m=100698397818175&w=2 <br>
Cisco reference at https://tools.cisco.com/security/center/viewAlert.x?alertId=2884 <br>
# Author
Alex Hernandez aka <em><a href="https://twitter.com/_alt3kx_" rel="nofollow">(@\_alt3kx\_)</a></em>
[4.0K] /data/pocs/26a26d68b7b90473c476f298b4a3b20b4e75dbbc
├── [2.4K] CVE-2001-0934.txt
├── [ 34K] LICENSE
└── [ 526] README.md
0 directories, 3 files