VendorsSteve Poulsenguildftpd0.9.7
Vulnerabilities

Steve Poulsen Guildftpd 0.9.7

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2000-0640
Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides different error messages depending on whether the file exists or not.
Published 2000-10-13 · Modified
7.51 PoCEPSS 0.072
CVE-2001-0767
Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.
Published 2001-10-12 · Modified
5.0EPSS 0.017
CVE-2001-0768
GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.
Published 2001-10-12 · Modified
4.6EPSS 0.003