CVE-2011-3171

EUVD-2011-3138
Directory traversal vulnerability in pure-FTPd 1.0.22 and possibly other versions, when running on SUSE Linux Enterprise Server and possibly other operating systems, when the Netware OES remote server feature is enabled, allows local users to overwrite arbitrary files via unknown vectors.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.6 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 4%
Affected Products (NVD)
VendorProductVersion
pureftpdpure-ftpd
𝑥
≤ 1.0.22
pureftpdpure-ftpd
0.90
pureftpdpure-ftpd
0.91
pureftpdpure-ftpd
0.92
pureftpdpure-ftpd
0.93
pureftpdpure-ftpd
0.94
pureftpdpure-ftpd
0.95
pureftpdpure-ftpd
0.95:pre1
pureftpdpure-ftpd
0.95:pre2
pureftpdpure-ftpd
0.95:pre3
pureftpdpure-ftpd
0.95:pre4
pureftpdpure-ftpd
0.95.1
pureftpdpure-ftpd
0.95.2
pureftpdpure-ftpd
0.96
pureftpdpure-ftpd
0.96:pre1
pureftpdpure-ftpd
0.96.1
pureftpdpure-ftpd
0.97:pre1
pureftpdpure-ftpd
0.97:pre2
pureftpdpure-ftpd
0.97:pre3
pureftpdpure-ftpd
0.97:pre4
pureftpdpure-ftpd
0.97:pre5
pureftpdpure-ftpd
0.97-final
pureftpdpure-ftpd
0.97.1
pureftpdpure-ftpd
0.97.2
pureftpdpure-ftpd
0.97.3
pureftpdpure-ftpd
0.97.4
pureftpdpure-ftpd
0.97.5
pureftpdpure-ftpd
0.97.6
pureftpdpure-ftpd
0.97.7
pureftpdpure-ftpd
0.97.7:pre1
pureftpdpure-ftpd
0.97.7:pre2
pureftpdpure-ftpd
0.97.7:pre3
pureftpdpure-ftpd
0.98:final
pureftpdpure-ftpd
0.98:pre1
pureftpdpure-ftpd
0.98:pre2
pureftpdpure-ftpd
0.98.1
pureftpdpure-ftpd
0.98.2
pureftpdpure-ftpd
0.98.2:a
pureftpdpure-ftpd
0.98.3
pureftpdpure-ftpd
0.98.4
pureftpdpure-ftpd
0.98.5
pureftpdpure-ftpd
0.98.6
pureftpdpure-ftpd
0.98.7
pureftpdpure-ftpd
0.99
pureftpdpure-ftpd
0.99:a
pureftpdpure-ftpd
0.99:b
pureftpdpure-ftpd
0.99:pre1
pureftpdpure-ftpd
0.99:pre2
pureftpdpure-ftpd
0.99.1
pureftpdpure-ftpd
0.99.1:a
pureftpdpure-ftpd
0.99.1:b
pureftpdpure-ftpd
0.99.2
pureftpdpure-ftpd
0.99.2:a
pureftpdpure-ftpd
0.99.3
pureftpdpure-ftpd
0.99.4
pureftpdpure-ftpd
0.99.9
pureftpdpure-ftpd
1.0.0
pureftpdpure-ftpd
1.0.1
pureftpdpure-ftpd
1.0.2
pureftpdpure-ftpd
1.0.3
pureftpdpure-ftpd
1.0.4
pureftpdpure-ftpd
1.0.5
pureftpdpure-ftpd
1.0.6
pureftpdpure-ftpd
1.0.7
pureftpdpure-ftpd
1.0.8
pureftpdpure-ftpd
1.0.9
pureftpdpure-ftpd
1.0.10
pureftpdpure-ftpd
1.0.11
pureftpdpure-ftpd
1.0.12
pureftpdpure-ftpd
1.0.13:a
pureftpdpure-ftpd
1.0.14
pureftpdpure-ftpd
1.0.15
pureftpdpure-ftpd
1.0.16:a
pureftpdpure-ftpd
1.0.16:b
pureftpdpure-ftpd
1.0.16:c
pureftpdpure-ftpd
1.0.17
pureftpdpure-ftpd
1.0.17:a
pureftpdpure-ftpd
1.0.18
pureftpdpure-ftpd
1.0.19
pureftpdpure-ftpd
1.0.20
pureftpdpure-ftpd
1.0.21
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pure-ftpd
hardy
not-affected
lucid
not-affected
maverick
ignored
natty
ignored
oneiric
not-affected
precise
not-affected
quantal
not-affected