| Title: Open tftpserver dot dot vulnerability |
| Author: Larry W. Cashdollar, @_larry0 |
| Date: 2006-03-24 |
| Download Site: http://sourceforge.net/projects/tftp-server/ |
| Vendor: achaldhir |
| Vendor Notified: 2006-03-24 |
| Vendor Contact: http://sourceforge.net/u/achaldhir/profile/ |
| Description: MultiThreaded TFTP Server Open Source Freeware Windows/Unix for PXEBOOT, firmware load, support tsize, blksize, timeout Server Port Ranges, Block Number Rollover for Large Files. Runs as Service/daemon. Single Port version also available. |
| Vulnerability: tftpserver beta 0.2 is vulnerable to the ../ bug because it does not sanitize user input. |
| CVEID: |
| OSVDB: |
Exploit Code:
|
| Screen Shots: |
| Advisory: http://www.vapid.dhs.org/advisories/tftpserver_dot_dot_vulnerability.html |