[Forgot Password]
Login  Register Subscribe

23631

 
 

126951

 
 

99536

 
 

909

 
 

80128

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2011-3171

Date: (C)2011-11-04   (M)2017-08-29 


Directory traversal vulnerability in pure-FTPd 1.0.22 and possibly other versions, when running on SUSE Linux Enterprise Server and possibly other operating systems, when the Netware OES remote server feature is enabled, allows local users to overwrite arbitrary files via unknown vectors.

CVSS Score: 3.6Access Vector: LOCAL
Exploit Score: 3.9Access Complexity: LOW
Impact Score: 4.9Authentication: NONE
 Confidentiality: NONE
 Integrity: PARTIAL
 Availability: PARTIAL





Reference:
BID-49541
SUSE-SU-2011:1028
SUSE-SU-2011:1029
pureftpd-oes-directory-traversal(69686)

CPE    81
cpe:/a:pureftpd:pure-ftpd:1.0.6
cpe:/a:pureftpd:pure-ftpd:1.0.7
cpe:/a:pureftpd:pure-ftpd:1.0.4
cpe:/a:pureftpd:pure-ftpd:1.0.5
...
CWE    1
CWE-22

© 2013 SecPod Technologies