CVE-2001-0452

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/06/2001
Last modified:
03/04/2025

Description

BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:brs:webweaver:0.49_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.50_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.51_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.52_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.60_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.61_beta:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:0.62_beta:*:*:*:*:*:*:*