Sploitus

CVE-1999-0997

1 known exploit for CVE-1999-0997

wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress.

Affected products
Wu-Ftpd
Millenux Gmbh Anonftp
= 2.8.1
University Of Washington Wu-ftpd
= 2.4.2, 2.5.0, 2.6.0
CVSS 2.0
7.5 HIGH
EPSS
6.2% (93th percentile)
NVD status
Modified
Published
2000-04-25
CVE-1999-0997 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-1999-0997

Proof-of-concept code and exploit modules indexed by Sploitus