CVE

CVE-1999-0080

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/11/1995
Last modified:
17/08/2022

Description

Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:washington_university:wu-ftpd:2.4:*:*:*:*:*:*:*