Description
Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to get the size of an arbitrary file on the filesystem using path traversal in the ftp "SIZE" command
Published: 2023-10-16
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-49977 Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to get the size of an arbitrary file on the filesystem using path traversal in the ftp "SIZE" command
History

No history.

Subscriptions

Southrivertech Titan Mft Server Titan Sftp Server
cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published:

Updated: 2024-09-16T18:06:59.780Z

Reserved: 2023-10-10T19:07:28.771Z

Link: CVE-2023-45688

cve-icon Vulnrichment

Updated: 2024-08-02T20:29:31.220Z

cve-icon NVD

Status : Modified

Published: 2023-10-16T17:15:10.183

Modified: 2024-11-21T08:27:13.613

Link: CVE-2023-45688

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses