cve/2019/CVE-2019-9649.md
2024-06-09 00:33:16 +00:00

1.1 KiB

CVE-2019-9649

Description

An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. Using the MDTM FTP command, a remote attacker can use a directory traversal technique (....) to browse outside the root directory to determine the existence of a file on the operating system, and its last modified date.

POC

Reference

Github