« List of all CVEs

CVE-2005-0372

Published: 2/17/2005 Last updated: 8/7/2024 Reserved: 2/13/2005

Directory traversal vulnerability in gftp before 2.0.18 for GTK+ allows remote malicious FTP servers to read arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.

CNA assigner: debian (79363d38-fa19-49d1-9214-5f28da3f3ac5) Requested by: n/a

Opam packages affected (4)

conf-gtk2 conf-gtk3 conf-gtksourceview freetennis

Products affected (1)

Product Vendor Version
n/a n/a v1.7.3 and earlier

References (20)