Back

HIGH

Arbitrary file write via WebDAV path traversal in Titan MFT and Titan SFTP servers

Published Oct 16, 2023

Description

Insufficient path validation when writing a file via WebDAV in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner rapid7
Published Oct 16, 2023
Updated Sep 16, 2024
Reserved Oct 10, 2023
CISA Vulnrichment
Updated Sep 16, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a