Vulnerabilities > CVE-2004-2184 - Directory Traversal vulnerability in Yak! Chat Client FTP Server

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
digicraft-software
exploit available

Summary

Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via "../" or "..\" sequences in commands such as (1) dir or (2) put.

Exploit-Db

descriptionYak! Chat Client 2.x FTP Server Directory Traversal Vulnerability. CVE-2004-2184. Dos exploit for windows platform
idEDB-ID:24684
last seen2016-02-02
modified2004-10-15
published2004-10-15
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/24684/
titleYak! Chat Client 2.x FTP Server Directory Traversal Vulnerability