5

CVE-2002-1345

Directory traversal vulnerabilities in multiple FTP clients on UNIX systems allow remote malicious FTP servers to create or overwrite files as the client user via filenames containing /absolute/path or .. (dot dot) sequences.

Data is provided by the National Vulnerability Database (NVD)
Ncftp SoftwareNcftp Version3.0.0
Ncftp SoftwareNcftp Version3.0.1
Ncftp SoftwareNcftp Version3.0.2
Ncftp SoftwareNcftp Version3.0.3
Ncftp SoftwareNcftp Version3.0.4
Ncftp SoftwareNcftp Version3.1.0
Ncftp SoftwareNcftp Version3.1.1
Ncftp SoftwareNcftp Version3.1.2
Ncftp SoftwareNcftp Version3.1.3
Ncftp SoftwareNcftp Version3.1.4
OpenbsdOpenbsd Version3.0
SunSolaris Version2.6
SunSolaris Version7.0 Editionx86
SunSunos Version-
SunSunos Version5.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.13% 0.826
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N