Back to Database
Status published
Medium
CVE-2004-2769
Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to...
Vulnerability Description
Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to list hidden files, even when the "Display hidden files" option is enabled, via the (1) MLSD or (2) MLST commands.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-2769
Credits & Attribution
No credits recorded in the NVD database.
References
More from cerberusftp
View All →CVE-2020-5196
Cerberus FTP Server Enterprise Edition prior to versions 11.0.3 and...
High
8.1
CVE-2020-5195
Reflected XSS through an IMG element in Cerberus FTP Server...
Medium
6.1
CVE-2020-5194
The zip API endpoint in Cerberus FTP Server 8 allows...
Medium
5.4
CVE-2019-25046
The Web Client in Cerberus FTP Server Enterprise before 10.0.19...
Medium
6.1
CVE-2017-6367
In Cerberus FTP Server 8.0.10.1, a crafted HTTP request causes...
High
7.5
Affected Vendor
cerberusftp
View all reports →Affected Software
ftp server
Vulnerable Versions:
0, 1.0, 1.01, 1.1, 1.2, 1.02, 1.03, 1.5, 1.05, 1.6, 1.7, 1.22, 1.71, 2.0, 2.1, 2.01, 2.02, 2.2, 2.3, 2.4, 2.11, 2.15, 2.16, 2.21, 2.22, 2.23, 2.31, 2.32, 2.41, 2.42, 2.43, 2.44, 2.45, 2.46, 2.47, 2.48, 2.49, 2.50, 3.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.7.1, 3.0.8, 3.1, 3.1.0.3, 3.1.0.4, 3.1.0.5, 3.1.1, 3.1.2, 3.1.3, 3.1.3.1, 3.1.4, 4.0.0, 4.0.0.6, 4.0.0.8, 4.0.0.9, 4.0.0.11, 4.0.1, 4.0.1.1, 4.0.2
Timeline
Official Publish:
July 2nd, 2010
Last Modified:
September 17th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.