Pi-Soft SpoonFTP 1.1 and earlier allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.
| Software | From | Fixed in |
|---|---|---|
| pi-soft / spoonftp | 1.00.13 | 1.00.13.x |
| pi-soft / spoonftp | 1.1 | 1.1.x |
| pi-soft / spoonftp | 1.00.12 | 1.00.12.x |
| pi-soft / spoonftp | 1.0 | 1.0.x |
| pi-soft / spoonftp | 0.01.1.0.1 | 0.01.1.0.1.x |