Archive for the ‘Vulnerabilities’ Category

Golden FTP Server File Deletion Vulnerability

Posted: 18th November 2009 by sharpe in Vulnerabilities

Summary Sarid Harper has discovered a vulnerability in Golden FTP Server, which can be exploited by malicious, anonymous individuals to delete arbitrary files. The vulnerability is caused by an error in the way FTP “DELE” requests are handled. This can be exploited to escape the FTP root and delete arbitrary files on the affected system [...]

Share

While many ActiveX components are slowly being replaced with technologies considered more secure and/or web-mature, many developers still utililise ActiveX controls as a quick way to push advanced functionality out to web browsers. ActiveX security is based on digital signatures, if you trust the source of the component then it is safe to run the [...]

Share