Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.Install Now
Available for macOS, Windows, and Linux
FFFTP LIST Command Directory Traversal Vulnerability
14 years ago
4 years ago
This host is installed with FFFTP Client and is prone to directory traversal vulnerability.
The flaw is due to input validation error when processing FTP responses to a LIST command with a filename and is followed by ../ (dot dot forward-slash).
FFFTP version 1.96b and prior on Windows.
Upgrade to version 1.96d or later.