|
Family: FTP --> Category: infos
Guild FTPd tells if a given file exists Vulnerability Scan
Vulnerability Scan Summary Guild FTP check
Detailed Explanation for this Vulnerability Test
The remote FTP server can be used to acertain if a given
file exists on the remote host or not, by adding dot-dot-slashes
in front of them.
For instance, it is possible to acertain the existence
of \autoexec.bat by requesting ../../../../autoexec.bat
A possible hacker may use this flaw to gain more knowledge about
this host, such as its file layout. This flaw is specially
useful when used with other vulnerabilities.
Solution : Contact your vendor for the latest software release.
Threat Level: Low
Click HERE for more information and discussions on this network vulnerability scan.
|