Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-2184. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary The exploit demonstrates a directory traversal vulnerability in Yak! Chat Client FTP server by using 'dir' and 'put' commands to navigate and write files outside the intended directory. This can lead to arbitrary file placement and potential remote code execution if combined with other techniques.
Description
Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via "../" or "..\" sequences in commands such as (1) dir or (2) put.
Exploits (1)
The exploit demonstrates a directory traversal vulnerability in Yak! Chat Client FTP server by using 'dir' and 'put' commands to navigate and write files outside the intended directory. This can lead to arbitrary file placement and potential remote code execution if combined with other techniques.