IglooFTP CVE-2004-1276 Local Security Vulnerability

IglooFTP is prone to a local security vulnerability. IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.


 

Privacy Statement
Copyright 2010, SecurityFocus