Junglewise Threat Intelligence

CVE-2008-7262: PYSEC-2010-4 - Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.3.0 allow remote authenticated users to access arbitrary

CVE-2008-7262 · Severity: low · CVSS 3.1 · Published 2010-10-19

Technologies: pyftpdlib (PyPI). Vendors: PyPI.

Executive brief

Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.3.0 allow remote authenticated users to access arbitrary files and directories via vectors involving a symlink in a pathname to a (1) CWD, (2) DELE, (3) STOR, or (4) RETR command.

Affected products

  • PyPI pyftpdlib

Related threats