CVE-2008-6534
26.03.2009, 21:00
Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument.Enginsight
| Vendor | Product | Version |
|---|---|---|
| vwsolutions | null_ftp | 1.1.0.7:pro |
| vwsolutions | null_ftp | 1.1.0.7:svr |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References