VYPR

by University of Washington

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-1999-09970.030.04Dec 20, 1999wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress.
CVE-1999-02020.000.01Jan 1, 1997The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.