VDB
CVE-2004-0148
CVE-2004-0148
PUBLISHED
Reported by mitre · Published September 1, 2004
wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | n/a, n/a, n/a |
Timeline
- Apr 15, 2004 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Apr 29, 2022 CVE Updated
- May 21, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 10, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
References
- wuftpd-restrictedgid-gain-access(15423) vdb-entryx_refsource_XF
- oval:org.mitre.oval:def:1637 vdb-entrysignaturex_refsource_OVAL
- 102356 vendor-advisoryx_refsource_SUNALERT
- DSA-457 vendor-advisoryx_refsource_DEBIAN
- oval:org.mitre.oval:def:1147 vdb-entrysignaturex_refsource_OVAL
- 11055 third-party-advisoryx_refsource_SECUNIA
- 20168 third-party-advisoryx_refsource_SECUNIA
- SSRT4704 vendor-advisoryx_refsource_HP
- 9832 vdb-entryx_refsource_BID
- oval:org.mitre.oval:def:648 vdb-entrysignaturex_refsource_OVAL
- RHSA-2004:096 vendor-advisoryx_refsource_REDHAT
- oval:org.mitre.oval:def:1636 vdb-entrysignaturex_refsource_OVAL
- ADV-2006-1867 third-party-advisoryx_refsource_FRSIRT