Unrated severityNVD Advisory· Published Apr 2, 2008· Updated Apr 23, 2026
CVE-2008-1620
CVE-2008-1620
Description
Directory traversal vulnerability in 2X TFTP service (TFTPd.exe) 3.2.0.0 and earlier in 2X ThinClientServer 5.0_sp1-r3497 and earlier allows remote attackers to read or overwrite arbitrary files via a ... (dot dot dot) in the filename.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- aluigi.altervista.org/adv/thindirtrav-adv.txtnvdExploit
- aluigi.org/testz/tftpx.zipnvdExploitPatch
- secunia.com/advisories/29590nvdVendor Advisory
- www.securityfocus.com/archive/1/490324/100/0/threadednvd
- www.securityfocus.com/bid/28504nvd
- www.vupen.com/english/advisories/2008/1040/referencesnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/41528nvd
News mentions
0No linked articles in our index yet.