CVE-2006-1383

medium

Description

Directory traversal vulnerability in Baby FTP Server (BabyFTP) 1.24 allows remote authenticated users to determine existence of files outside the intended document root via unspecified manipulations, which generate different error messages depending on whether a file exists or not.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/25413

http://www.vupen.com/english/advisories/2006/1069

http://www.securityfocus.com/bid/17205

http://www.osvdb.org/24057

http://secunia.com/advisories/19338

Details

Source: Mitre, NVD

Published: 2006-03-24

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 4

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 4.3

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Severity: Medium

EPSS

EPSS: 0.00691