← Vulnerability feed

Vulnerability record · CVE-2010-2425 · published 24 June 2010

CVE-2010-2425: Southrivertech titan ftp server path traversal vulnerability

Southrivertech · Titan Ftp Server

Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read or delete arbitrary files via "..//" sequences in a COMB command.

6.5 CVSS 2.0 Medium EPSS 1.2% · top 32.6% CWE-22 · Path traversal
6.5CVSS 2.0 base score
1.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References
16 Jun 2026Last modified by NVD

Description

Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read or delete arbitrary files via "..//" sequences in a COMB command.

AV:N/AC:L/Au:S/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2010-2425 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2023-22629Southrivertech titan ftp server path traversal vulnerabilityAn issue was discovered in TitanFTP through 1.94.1205. The move-file function has a path traversal vulnerability in the newPath parameter. An authent…EPSS 12%6.5CVE-2019-10009Southrivertech titan ftp server path traversal vulnerabilityA Directory Traversal issue was discovered in the Web GUI in Titan FTP Server 2019 Build 3505. When an authenticated user attempts to preview an uplo…EPSS 11%6.1CVE-2022-44215Southrivertech titan ftp server open redirect vulnerabilityThere is an open redirect vulnerability in Titan FTP server 19.0 and below. Users are redirected to any target URL.EPSS 0.88%5.0CVE-2014-1841Southrivertech titan ftp server path traversal vulnerabilityDirectory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to copy an arbitrary user'…EPSS 4.9%5.0CVE-2014-1842Southrivertech titan ftp server path traversal vulnerabilityDirectory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to list all usernames via …EPSS 5.3%5.0CVE-2014-1843Southrivertech titan ftp server path traversal vulnerabilityDirectory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to obtain the property inf…EPSS 4.7%5.0CVE-2008-6082Southrivertech titan ftp server vulnerabilityTitan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO command.EPSS 45%4.9CVE-2023-45690Southrivertech titan ftp server incorrect default permissions vulnerabilityDefault file permissions on South River Technologies' Titan MFT and Titan SFTP servers on Linux allows a user that's authentication to the OS to read…EPSS 1.5%

Source: NIST National Vulnerability Database (record CVE-2010-2425), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.