Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mphq-qg37-mjrq

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the file, a different vulnerability than CVE-2005-0520.

ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the file, a different vulnerability than CVE-2005-0520.

EPSS

Процентиль: 78%
0.01187
Низкий

Связанные уязвимости

nvd
почти 21 год назад

ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the file, a different vulnerability than CVE-2005-0520.

EPSS

Процентиль: 78%
0.01187
Низкий