Titan FTP Server versions prior to 10.40 build 1829 contain a directory traversal vulnerability in the Move function. Remote attackers can copy the complete home folder of another user by exploiting the ../ path traversal in the search-bar value, allowing unauthorized access to sensitive user data.
id: CVE-2014-1841
info:
name: Titan FTP Server < 10.40 Move Function - Directory Traversal
auth
...