Xlight FTP Server 1.x contains a flaw that allows a remote denial of service. The issue is triggered when an authenticated user supplies a tilde ('~') as an argument to the 'cd' command, and will result the FTP Server service crashing.
Classification
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution
Upgrade to version 1.41 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.