Описание
Ipswitch WS_FTP Server Manager 6.1.0.0 and earlier, and possibly other Ipswitch products, might allow remote attackers to read the contents of custom ASP files in WSFTPSVR/ via a request with an appended dot character.
Ссылки
Уязвимые конфигурации
Конфигурация 1Версия до 6.1 (включая)
Одно из
cpe:2.3:a:ipswitch:ws_ftp:*:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:2.01:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:2.02:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:2.03:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.0:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.1.3:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:3.14:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:4.00:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:4.01:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:4.02:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.00:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.01:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.02:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.03:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.04:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:5.05:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:ws_ftp:6.0:*:*:*:*:*:*:*
EPSS
Процентиль: 19%
0.00062
Низкий
5 Medium
CVSS2
Дефекты
CWE-20
Связанные уязвимости
github
больше 3 лет назад
Ipswitch WS_FTP Server Manager 6.1.0.0 and earlier, and possibly other Ipswitch products, might allow remote attackers to read the contents of custom ASP files in WSFTPSVR/ via a request with an appended dot character.
EPSS
Процентиль: 19%
0.00062
Низкий
5 Medium
CVSS2
Дефекты
CWE-20