| CVE-2007-5930 (FTP Server) |
| Cross-site scripting (XSS) vulnerability in the web interface in Cerberus FTP Server before 2.46 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5930) |
|
| CVE-2007-6234 (FTP Admin) |
| index.php in FTP Admin 0.1.0 allows remote attackers to bypass authentication and obtain administrative access via a loggedin parameter with a value of true, as demonstrated by adding a user ... |
|
| CVE-2007-6233 (FTP Admin) |
| Directory traversal vulnerability in index.php in FTP Admin 0.1.0 allows remote authenticated users to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: ... |
|
| FTP Admin 0.1.0 (LFI/XSS/AB) Multiple Remote Vulnerabilities |
| Feel free to discuss about this proof-of-concept code <iframe src="http://www.milw0rm.com/exploits/4681" type="text/plain" style="background-color: #F0E68C" height="1000" width="830"><br></iframe> Download:exploit (http://www.milw0rm.com/exploits/4681) |
|