Wu-ftp RNFR command vulnerable |
---|
Risk Level: | Medium | Check or Attack Name: ftprnfr |
---|---|---|
Platforms: | wu-ftpd | |
Description: | Some versions of wu-ftp allow RNFR commands to overwrite or rename files even when these commands have violated file permissions. This issue occurs in wu-ftpd version 2.4 and earlier. |
|
Remedy: | Upgrade to the latest release of Wu-FTPd available. |
|
References: | Academ Consulting Services, WU-FTP Server Software Release Information, http://ftp.academ.com/academ/wu-ftpd/release.html |
Know Your Risks |