The FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to gain sensitive information via a cd command that contains an MS-DOS device name, which reveals the installation path in an error message.
https://exchange.xforce.ibmcloud.com/vulnerabilities/18756
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-0279