What: Non-anonymous users on some Linux ftpd can run root commands When: 7/96? Who: Cert advisories ftp://info.cert.org/pub/cert_advisories/ Description: *NON*-anonymous ftp logins on some versions of Linux use the wrong bin directory (not /users/ftp/bin) - allowing users to exec regular bin commands as root. Test: [ Use a *user* login on a Linux ftp site ] quote site exec echo this site is hacked