CVE-1999-1345
        
        
            
                Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in the directory, and (2) view files that are being transferred.
            
        
        
        
            
                Published
                1999-10-05T04:00:00.000
                Last Modified
                2025-04-03T01:03:51.193
                Status
                Deferred
                Source
                [email protected]
             
            
                Severity
                
                    CVSSv2: 4.6 (MEDIUM)
                
                
                    CVSSv2 Vector
                    AV:L/AC:L/Au:N/C:P/I:P/A:P
                    
                        - Access Vector: LOCAL
- Access Complexity: LOW
- Authentication: NONE
- Confidentiality Impact: PARTIAL
- Integrity Impact: PARTIAL
- Availability Impact: PARTIAL
Exploitability Score
                    3.9
                    Impact Score
                    6.4
                
                Weaknesses
                
                    
                    
                        - 
                            Type: Primary
 NVD-CWE-Other
 
 
         
        
        Affected Vendors & Products
        
        
        
            
                
                    
                        
                            
                                
                                
                                    
                                    
                                    
                                    
                                    
                                    
                                    
                                        
                                    
                                    
                                
                            
                        
                    
                
            
        
        
            
                
                    
                        | Type | Vendor | Product | Version/Range | Vulnerable? | 
                
                
                    
                    
                        | Application | auto_ftp | auto_ftp | 0.2 | Yes | 
                    
                
            
        
         
        
        References