CVE-2010-4149
Directory traversal vulnerability in FreshWebMaster Fresh FTP 5.36, 5.37, and possibly earlier, allows remote FTP servers to write arbitrary files via a ".." (dot dot backslash) in a filename. NOTE: some of these details are obtained from third party information.
Date published : 2010-11-01
http://www.securityfocus.com/bid/44072
http://www.securityfocus.com/archive/1/514259/100/0/threaded