| ID |
CVE-2008-6534
|
| Sažetak |
Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument. |
| Reference |
|
| CVSS |
| Base: | 7.1 |
| Impact: | 10.0 |
| Exploitability: | 3.9 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| NETWORK |
HIGH |
SINGLE |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| COMPLETE |
COMPLETE |
COMPLETE |
|
| CVSS vektor |
AV:N/AC:H/Au:S/C:C/I:C/A:C |
| Zadnje važnije ažuriranje |
29-09-2017 - 01:33 |
| Objavljeno |
26-03-2009 - 21:00 |