Vulnerabilities > CVE-2005-0519 - Unspecified vulnerability in Argosoft FTP Server
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN argosoft
nessus
Summary
ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the file, a different vulnerability than CVE-2005-0520.
Vulnerable Configurations
Nessus
NASL family | FTP |
NASL id | ARGOSOFT_FTP_SHORTCUT2.NASL |
description | The remote host is running the ArGoSoft FTP Server. It is reported that ArGoSoft FTP Server allows an attacker to upload shortcut (.LNK) files via either a |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 16334 |
published | 2005-02-09 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/16334 |
title | ArGoSoft FTP Server < 1.4.2.8 Multiple .LNK File Handling Vulnerabilities |
code |
|
References
- http://secunia.com/advisories/14172
- http://secunia.com/advisories/14172
- http://www.argosoft.com/ftpserver/changelist.aspx
- http://www.argosoft.com/ftpserver/changelist.aspx
- http://www.osvdb.org/13614
- http://www.osvdb.org/13614
- http://www.securityfocus.com/bid/12487
- http://www.securityfocus.com/bid/12487
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17939
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17939