Back

MEDIUM

WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to obtain the full pathname of the server via a "%C" command, which generates an error message that includes the pathname

Published May 7, 2001

Description

WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to obtain the full pathname of the server via a "%C" command, which generates an error message that includes the pathname.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 7, 2001
Updated Aug 8, 2024
Reserved Oct 18, 2000
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date n/a