The samiftp.dll library in Sami FTP Server 1.1.3 allows local users to cause a denial of service (pmsystem.exe crash) by issuing (1) a CD command with a tilde (~) character or dot dot (/../) or (2) a GET command for an unavailable file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sami_ftp_server | Karjasoft | 1.1.3 (including) | 1.1.3 (including) |