GNU.Wget.FTP.Symlink.Arbitrary.Filesystem.Access

description-logoDescription

This indicates an attack attempt against a Directory Traversal vulnerability in Wget.
The vulnerability is caused by an error when the vulnerable software accesses symlink in recursive mode on remote FTP servers. It allows a remote attacker to overwrite arbitrary file or execute arbitrary code on vulnerable systems.

affected-products-logoAffected Products

GNU Wget before 1.16

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to the latest version,available from the web site.
http://lists.gnu.org/archive/html/bug-wget/2014-10/msg00150.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)