Download
| Alert*
oval:org.secpod.oval:def:610325
ZeddYu Lu discovered that the FTP client of Apache Commons Net, a Java client API for basic Internet protocols, trusts the host from PASV response by default. A malicious server can redirect the Commons Net code to use a different host, but the user has to connect to the malicious server in the firs ... oval:org.secpod.oval:def:708115 libcommons-net-java: Apache Commons Net - Java client API for basic Internet protocols Apache Commons Net could be made to expose sensitive information over the network. oval:org.secpod.oval:def:93189 libcommons-net-java: Apache Commons Net - Java client API for basic Internet protocols Apache Commons Net could be made to expose sensitive information over the network. oval:org.secpod.oval:def:88446 ZeddYu Lu discovered that the FTP client of Apache Commons Net, a Java client API for basic Internet protocols, trusts the host from PASV response by default. A malicious server can redirect the Commons Net code to use a different host, but the user has to connect to the malicious server in the firs ... |