CVE-2015-3306

Critique10.0 Publiée le 18 mai 2015

The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.

Score CVSS10.0 / 10CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Type de faiblesse (CWE)CWE-284, CWE-284
Éditeursproftpd

Produits concernés

ÉditeursProduitVersions
proftpdproftpd1.3.5

Articles liés

This product uses the NVD API but is not endorsed or certified by the NVD.

Base de données CVE