Loading vulnerability details…
CVSS v3.1
N/A
EPSS
74.76%
Published
Nov 30, 2001
Modified
Jun 16, 2026
Public PoC / Exploit (3)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).
Affected Products (5)
References (20)