CVE-2010-4149

Directory traversal vulnerability in FreshWebMaster Fresh FTP 5.36, 5.37, and possibly earlier, allows remote FTP servers to write arbitrary files via a ".." (dot dot backslash) in a filename. NOTE: some of these details are obtained from third party information.

Date published : 2010-11-01

http://www.securityfocus.com/bid/44072

http://www.securityfocus.com/archive/1/514259/100/0/threaded