Executive Summary

Informations
Name CVE-1999-1326 First vendor Publication 1997-07-04
Vendor Cve Last vendor Modification 2017-10-10

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N)
Cvss Base Score 5 Attack Range Network
Cvss Impact Score 2.9 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-1326

CWE : Common Weakness Enumeration

% Id Name

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 1

OpenVAS Exploits

Date Description
2005-11-03 Name : wu-ftpd ABOR priviledge escalation
File : nvt/wu_ftpd_abor_priviledge_escalation.nasl

Open Source Vulnerability Database (OSVDB)

Id Description
8718 WU-FTPD ABOR Command Arbitrary File Access

wu-ftpd contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when an ftp client is transferring a file, then closes the connection and sends an ABOR command, which causes the server to execute the dologout() function, allowing the user to gain root privileges. This flaw may lead to a loss of confidentiality and/or integrity.

Nessus® Vulnerability Scanner

Date Description
2004-08-17 Name : The remote FTP server seems to be vulnerable to a remote privilege escalation.
File : wu_ftpd_abor_priviledge_escalation.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
BUGTRAQ http://marc.info/?l=bugtraq&m=87602167420401&w=2
http://marc.info/?l=bugtraq&m=87602167420408&w=2
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/7169

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
Date Informations
2021-05-04 12:01:02
  • Multiple Updates
2021-04-22 01:01:15
  • Multiple Updates
2020-05-23 00:14:16
  • Multiple Updates
2017-10-10 09:23:15
  • Multiple Updates
2016-10-18 12:00:48
  • Multiple Updates
2014-02-17 10:22:46
  • Multiple Updates
2013-05-11 11:58:16
  • Multiple Updates