CVE-1999-0017 — Improper Privilege Management in Openlinux
Severity
7.5HIGHNVD
EPSS
0.5%
top 32.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 10
Latest updateMay 1
Description
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
CVSS vector
AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4
Affected Packages8 packages
Also affects: Netbsd 1.0, 1.1, 1.2, 1.2.1, Freebsd 1.0, 1.1, 1.2, 2.0, 2.1.0, 2.1.7
🔴Vulnerability Details
3GHSA▶
GHSA-mq66-4xx4-r348: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce↗2022-04-30
CVEList▶
CVE-1999-0017: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce↗1999-09-29