Cerberus FTP Server HTTP/S Web Client Security Restriction Bypass Vulnerability
Release date:
Updated on:
Affected Systems:
Cerberus FTP Server <6.0.7
Description:
--------------------------------------------------------------------------------
Cerberus FTP Server is an FTP service program applicable to Windows operating systems.
Cerberus FTP Server versions earlier than 6.0.7 have security vulnerabilities in the implementation of HTTP/S web clients, which can be exploited to leak restricted access to resources on servers.
<* Source: vendor
Link: http://secunia.com/advisories/57425/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Cerberus
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.cerberusftp.com/
Http://www.cerberusftp.com/products/releasenotes.html