← Back

CVE-2010-4149

nvd nist
Published: Nov 2, 2010Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Directory traversal vulnerability in FreshWebMaster Fresh FTP 5.36, 5.37, and possibly earlier, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename. NOTE: some of these details are obtained from third party information.

Affected (2)

Fresh Ftp
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Freshwebmaster
Up to 5.37
Version 5.36

References (14)

Timeline

No history available yet.