CVE-2001-0687

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/09/2001
Last modified:
03/04/2025

Description

Broker FTP server 5.9.5 for Windows NT and 9x allows a remote attacker to retrieve privileged web server system information by (1) issuing a CD command (CD C:) followed by the LS command, (2) specifying arbitrary paths in the UNC format (\\computername\sharename).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:transsoft:broker_ftp_server:*:*:*:*:*:*:*:* 5.9.5.0 (including)
cpe:2.3:a:transsoft:broker_ftp_server:4.0:*:*:*:*:*:*:*
cpe:2.3:a:transsoft:broker_ftp_server:4.7.5.0:*:*:*:*:*:*:*
cpe:2.3:a:transsoft:broker_ftp_server:5.0:*:*:*:*:*:*:*
cpe:2.3:a:transsoft:broker_ftp_server:5.1:*:*:*:*:*:*:*