WU-FTPD rnfr File Overwrite

High Nessus Plugin ID 14302


The remote FTP server has a file overwrite vulnerability.


The remote WU-FTPD server seems to be vulnerable to a remote flaw.

This version contains a flaw that may allow a malicious user to overwrite arbitrary files. The issue is triggered when an attacker sends a specially formatted rnfr command. This flaw will allow a remote attacker to overwrite any file on the system.

*** Nessus solely relied on the banner of the remote server
*** to issue this warning, so it may be a false positive.


Upgrade to WU-FTPD 2.4.2 or newer.

Plugin Details

Severity: High

ID: 14302

File Name: wu_ftpd_rnfr_file_overwrite.nasl

Version: $Revision: 1.15 $

Type: remote

Family: FTP

Published: 2004/08/17

Modified: 2014/05/24

Dependencies: 10079, 10092

Risk Information

Risk Factor: High


Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:C/A:N

Vulnerability Information

Required KB Items: ftp/login, ftp/wuftpd, Settings/ParanoidReport

Vulnerability Publication Date: 1999/08/27

Reference Information

CVE: CVE-1999-0081

OSVDB: 8717