CVE-2015-7601

Executive Summary

CVE-2015-7601 exposes a directory traversal flaw in PCMan FTP Server 2.0.7, enabling remote attackers to craft a RETR command containing '..//' and read arbitrary files on the server. The vulnerability allows unauthorized file disclosure without authentication and is not currently listed in the CISA KEV database.


Authoritative CVE Metadata - CVSS Base Score: 7.8 (HIGH) - Published: 2015-09-29T19:59:09.547 - Last Modified: 2026-08-19T17:19:07.717

Original Description: Directory traversal vulnerability in PCMan's FTP Server 2.0.7 allows remote attackers to read arbitrary files via a ..// (dot dot double slash) in a RETR command.

"To accomplish great things, we must not only act, but also dream; not only plan, but also believe."

— Anatole France
Source: NVD