CVE-2001-0550
wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).
- Affected products
- Wu-Ftpd
- David Madore Ftpd-bsd
- = 0.3.2, 0.3.3
- Washington University Wu-ftpd
- = 2.5.0, 2.6.0, 2.6.1
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 74.8% (99th percentile)
- NVD status
- Modified
- Published
- 2002-06-25
CVE-2001-0550 at NVD
5 known exploits for CVE-2001-0550
Proof-of-concept code and exploit modules indexed by Sploitus