CVE-2001-0933

Cooolsoft PowerFTP Server 2.03 - Info Disclosure

Title source: llm
STIX 2.1

Description

Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".

Exploits (1)

nomisec WRITEUP
by alt3kx · poc
https://github.com/alt3kx/CVE-2001-0933

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=100698397818175&w=2

Scores

EPSS 0.0887
EPSS Percentile 92.6%

Details

Status published
Products (1)
cooolsoft/powerftp 2.03
Published Nov 28, 2001
Tracked Since Feb 18, 2026