Vulnerability Description
Directory traversal vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote attackers to create arbitrary directories via directory traversal sequences in a MKD request. NOTE: the provenance of this information is unknown; details are obtained from third party sources.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Altools | Alftp Ftp Server | 4.1_beta1 |
References
- http://secunia.com/advisories/22874Vendor Advisory
- http://www.securityfocus.com/bid/21058Vendor Advisory
- http://www.vupen.com/english/advisories/2006/4518
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30282
- http://secunia.com/advisories/22874Vendor Advisory
- http://www.securityfocus.com/bid/21058Vendor Advisory
- http://www.vupen.com/english/advisories/2006/4518
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30282
FAQ
What is CVE-2006-5949?
CVE-2006-5949 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Directory traversal vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote attackers to create arbitrary directories via directory traversal sequences in a MKD reque...
How severe is CVE-2006-5949?
CVE-2006-5949 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-5949?
Check the references section above for vendor advisories and patch information. Affected products include: Altools Alftp Ftp Server.