Total vulnerabilities in the database
Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file, as demonstrated by executing the README.exe file when a user attempts to access the README file.
Software | From | Fixed in |
---|---|---|
estsoft / alftp | 4.1-beta2 | 4.1-beta2.x |
estsoft / alftp | 4.1 | 4.1.x |
estsoft / alftp | - | 5.1.x |
estsoft / alftp | 5.0 | 5.0.x |
estsoft / alftp | 5.1-beta2 | 5.1-beta2.x |