Crob FTP Server 3.5.1 allows remote authenticated users to cause a denial of service (crash) via a dir command with a large number of . characters followed by a /* string.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Crob_ftp_server |
Crob |
3.5.1 (including) |
3.5.1 (including) |
References