peter bassill · operator
$ cve CVE-2014-1843 JSON

CVE-2014-1843 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 4.7% (pctl 91)

Patch early

A public exploit exists.

Description

Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to obtain the property information of an arbitrary home folder via a Properties action with a .. (dot dot) in the src parameter.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS4.67% — more likely to be exploited than 91% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2014-04-29
Last modified2026-06-17

Affected (1)

VendorProduct
southrivertechtitan ftp server

Public exploits

SourceTitleDate
exploit-dbTitan FTP Server 10.32 Build 1816 - Directory Traversal2014-02-11

References

→ the Explorer  ·  watch your stack  ·  NVD