Total vulnerabilities in the database
WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to obtain the full pathname of the server via a "%C" command, which generates an error message that includes the pathname.
Software | From | Fixed in |
---|---|---|
texas_imperial_software / wftpd | 2.4.1_rc11 | 2.4.1_rc11.x |
texas_imperial_software / wftpd | 2.34 | 2.34.x |
texas_imperial_software / wftpd | 2.4.1 | 2.4.1.x |
texas_imperial_software / wftpd | 2.4.1_rc12 | 2.4.1_rc12.x |
texas_imperial_software / wftpd | 2.40 | 2.40.x |
texas_imperial_software / wftpd_pro | 2.41_rc12 | 2.41_rc12.x |