CVE-2008-6534
26.03.2009, 21:00
Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument.Enginsight
Vendor | Product | Version |
---|---|---|
vwsolutions | null_ftp | 1.1.0.7:pro |
vwsolutions | null_ftp | 1.1.0.7:svr |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References