[原文]Directory traversal vulnerability in the TFTP server in PacketTrap Networks pt360 Tool Suite 1.1.33.1.0, and other versions before 2.0.3900.0, allows remote attackers to read and overwrite arbitrary files via directory traversal sequences in the pathname.
[CNNVD]PacketTrap Networks pt360 Tool Suite TFTP服务器目录遍历漏洞(CNNVD-200803-202)
PacketTrap pt360 TFTP Server Traversal Arbitrary File Access
Vendor Verified
–
漏洞描述
PacketTrap pt360 TFTP Server contains a flaw that may allow a remote denial of service. The issue is triggered when a malicious attacker sends a malformed request, and will result in loss of availability for the service.
–
时间线
2008-03-03
2008-01-29
Unknow
2008-02-29
–
解决方案
Upgrade to version 2.0.3900.0 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.