Total vulnerabilities in the database
Argument injection vulnerability in WinSCP 3.8.1 build 328 allows remote attackers to upload or download arbitrary files via encoded spaces and double-quote characters in a scp or sftp URI.
Software | From | Fixed in |
---|---|---|
winscp / winscp | 3.8.1 | 3.8.1.x |