CVE-2004-0676
Fastream NETFile FTP/Web Server <6.7.2.1085 - Path Traversal
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-0676. PoCs published by Andres Tarasco Acuna.
AI-analyzed exploit summary The exploit describes a directory traversal vulnerability in Fastream NetFILE FTP/Web Server versions 6.7.2.1085 and prior. It allows an attacker to create, view, and delete arbitrary files outside the web root by manipulating the 'filename' parameter in a URL.
Description
Directory traversal vulnerability in Fastream NETFile FTP/Web Server 6.7.2.1085 and earlier allows remote attackers to create or delete arbitrary files via .. (dot dot) and // (double slash) sequences in the filename parameter.
Exploits (1)
The exploit describes a directory traversal vulnerability in Fastream NetFILE FTP/Web Server versions 6.7.2.1085 and prior. It allows an attacker to create, view, and delete arbitrary files outside the web root by manipulating the 'filename' parameter in a URL.