Directory traversal vulnerability in pure-FTPd 1.0.22 and possibly other versions, when running on SUSE Linux Enterprise Server and possibly other operating systems, when the Netware OES remote server feature is enabled, allows local users to overwrite arbitrary files via unknown vectors.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00015.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00016.html - | |
References | () http://www.securityfocus.com/bid/49541 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/69686 - |
Information
Published : 2011-11-04 21:55
Updated : 2024-11-21 01:29
NVD link : CVE-2011-3171
Mitre link : CVE-2011-3171
CVE.ORG link : CVE-2011-3171
JSON object : View
Products Affected
suse
- linux_enterprise_server
- linux_enterprise_desktop
pureftpd
- pure-ftpd
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')