Vulnerabilities > CVE-2005-1240 - Directory Traversal vulnerability in Secure Net
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Directory traversal vulnerability in the third party tool from Castlehill, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |