Количество 11
Количество 11
CVE-2018-10916
It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system.
CVE-2018-10916
It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system.
CVE-2018-10916
It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system.
CVE-2018-10916
It has been discovered that lftp up to and including version 4.8.3 doe ...
openSUSE-SU-2019:1110-1
Security update for lftp
openSUSE-SU-2019:1059-1
Security update for lftp
SUSE-SU-2019:0643-1
Security update for lftp
SUSE-SU-2019:0642-1
Security update for lftp
GHSA-8mjf-52xq-g6h8
It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system.
ELSA-2020-1045
ELSA-2020-1045: lftp security update (MODERATE)
BDU:2019-01302
Уязвимость консольного FTP-клиента lftp, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю выполнить удаление файлов в текущем рабочем каталоге системы
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-10916 It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system. | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-10916 It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system. | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-10916 It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system. | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-10916 It has been discovered that lftp up to and including version 4.8.3 doe ... | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад | |
openSUSE-SU-2019:1110-1 Security update for lftp | 1% Низкий | почти 7 лет назад | ||
openSUSE-SU-2019:1059-1 Security update for lftp | 1% Низкий | почти 7 лет назад | ||
SUSE-SU-2019:0643-1 Security update for lftp | 1% Низкий | почти 7 лет назад | ||
SUSE-SU-2019:0642-1 Security update for lftp | 1% Низкий | почти 7 лет назад | ||
GHSA-8mjf-52xq-g6h8 It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current working directory of the victim's system. | CVSS3: 6.5 | 1% Низкий | больше 3 лет назад | |
ELSA-2020-1045 ELSA-2020-1045: lftp security update (MODERATE) | почти 6 лет назад | |||
BDU:2019-01302 Уязвимость консольного FTP-клиента lftp, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю выполнить удаление файлов в текущем рабочем каталоге системы | CVSS3: 5.3 | 1% Низкий | больше 7 лет назад |
Уязвимостей на страницу