← Vulnerability feed

Vulnerability record · CVE-2001-1042 · published 2 July 2001

CVE-2001-1042: Transsoft broker ftp server link following vulnerability

Transsoft · Broker Ftp Server

Transsoft Broker 5.9.5.0 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.

7.5 CVSS 3.1 High EPSS 3.3% · top 12.0% CWE-59 · Link following
7.5CVSS 3.1 base score, v2 5.0
3.3%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Transsoft Broker 5.9.5.0 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://www.securityfocus.com/archive/1/194443 Broken LinkThird Party AdvisoryVDB EntryVendor Advisory
http://www.securityfocus.com/bid/2960 Broken LinkExploitThird Party AdvisoryVDB EntryVendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/6760 Third Party AdvisoryVDB Entry
http://www.securityfocus.com/archive/1/194443 Broken LinkThird Party AdvisoryVDB EntryVendor Advisory
http://www.securityfocus.com/bid/2960 Broken LinkExploitThird Party AdvisoryVDB EntryVendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/6760 Third Party AdvisoryVDB Entry

Track CVE-2001-1042 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2002-0405Transsoft broker ftp server vulnerabilityBuffer overflow in Transsoft Broker FTP Server 5.0 evaluation allows remote attackers to cause a denial of service and possibly execute arbitrary cod…EPSS 5.3%7.5CVE-2000-1116Transsoft broker ftp server vulnerabilityBuffer overflow in TransSoft Broker FTP Server before 4.3.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary com…EPSS 7.9%6.4CVE-2001-0450Transsoft broker ftp server vulnerabilityDirectory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary…EPSS 1.7%5.0CVE-2004-0295Transsoft broker ftp server vulnerabilityTsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a denial of service (CPU consumption) via an open idle connection.EPSS 3.1%5.0CVE-2004-0296Transsoft broker ftp server vulnerabilityTsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a TsFtpSrv.exe to exit with an exception by opening and immediately closing a con…EPSS 1.7%5.0CVE-2001-0687Transsoft broker ftp server vulnerabilityBroker FTP server 5.9.5 for Windows NT and 9x allows a remote attacker to retrieve privileged web server system information by (1) issuing a CD comma…EPSS 1.7%5.0CVE-2001-0688Transsoft broker ftp server vulnerabilityBroker FTP Server 5.9.5.0 allows a remote attacker to cause a denial of service by repeatedly issuing an invalid CD or CWD ("CD . .") command.EPSS 5.1%7.8CVE-2026-81963Windows Update Stack link-following privilege escalationWindows Update Stack resolves links improperly before accessing files, a link-following flaw (CWE-59) compounded by improper access control (CWE-284)…KEVEPSS 0.39%analysed

Source: NIST National Vulnerability Database (record CVE-2001-1042), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.