Back to Database
Status published
Critical
CVE-2000-0587
The privpath directive in glftpd 1.18 allows remote attackers to...
Vulnerability Description
The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0587
Credits & Attribution
No credits recorded in the NVD database.
References
More from glftpd
View All →CVE-2021-31645
An issue was discovered in glFTPd 2.11a that allows remote...
High
7.5
CVE-2006-1253
Unspecified vulnerability in glFTPd before 2.01 RC5 allows remote attackers...
High
7.5
CVE-2005-0483
Multiple directory traversal vulnerabilities in sitenfo.sh, sitezipchk.sh, and siteziplist.sh in...
Medium
5
CVE-2001-0965
glFTPD 1.23 allows remote attackers to cause a denial of...
Medium
5
CVE-2000-0040
glFtpD allows local users to gain privileges via metacharacters in...
Critical
10
Affected Vendor
glftpd
View all reports →Affected Software
glftpd
Vulnerable Versions:
1.18, 1.19, 1.20, 1.21b1, 1.21b2, 1.21b3, 1.21b4, 1.21b5, 1.21b6, 1.21b7, 1.21b8
Timeline
Official Publish:
October 13th, 2000
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.