Korean
<< Back
VID 16005
Severity 40
Port 21
Protocol TCP
Class FTP
Detailed Description The FTP server has any world writable directories
It is usually a bad idea to have world writable directories in a public FTP server, since it may allow anyone to use the FTP server as a 'warez' server (this means that the FTP server will be used to exchange copyrighted software between software pirates). It may also allow anyone to make a denial of service by filling up the hard disk.

* References:
http://www.iss.net/security_center/static/53.php
http://ciac.llnl.gov/ciac/bulletins/d-19.shtml
Recommendation Remove write permissions from the writable directories of the FTP server
Related URL CVE-1999-0527 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)