RSS   Vulnerabilities for 'Tftputil'   RSS

2009-01-27
 
CVE-2009-0289

CWE-20
 

 
k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to cause a denial of service (service crash) via a long filename in a crafted request.

 
 
CVE-2009-0288

CWE-22
 

 
Directory traversal vulnerability in k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to read arbitrary files outside the TFTP root directory via directory traversal sequences in a GET request.

 


Copyright 2024, cxsecurity.com

 

Back to Top