Vulnerabilities (CVE)

Filtered by vendor University Of Washington Subscribe
Filtered by product Wu-ftpd
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0202 1 University Of Washington 1 Wu-ftpd 2023-12-10 7.5 HIGH N/A
The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.
CVE-1999-0997 3 Millenux Gmbh, Redhat, University Of Washington 3 Anonftp, Linux, Wu-ftpd 2023-12-10 7.5 HIGH N/A
wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress.