Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-6510.
PoCs published by Ahmed Elhady Mohamed, including Metasploit module auxiliary/scanner/ftp/easy_file_sharing_ftp.
AI-analyzed exploit summary This Metasploit module exploits a directory traversal vulnerability in Easy File Sharing FTP Server 3.6 and earlier, allowing arbitrary file download via crafted RETR commands with '../' sequences. It connects anonymously, retrieves the file, and stores it as loot.
Description
Easy File Sharing FTP Server version 3.6 is vulnerable to a directory traversal vulnerability which allows an attacker to list and download any file from any folder outside the FTP root Directory.
Exploits (1)
This Metasploit module exploits a directory traversal vulnerability in Easy File Sharing FTP Server 3.6 and earlier, allowing arbitrary file download via crafted RETR commands with '../' sequences. It connects anonymously, retrieves the file, and stores it as loot.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N