CVE-2012-6664: Distinct Intranet Servers

Critical severity, CVSS 9.1. EPSS: 29.5% chance of exploitation in the next 30 days.

Multiple directory traversal vulnerabilities in the TFTP Server in Distinct Intranet Servers 3.10 and earlier allow remote attackers to read or write arbitrary files via a .. (dot dot) in the (1) get or (2) put commands.

Affected products

  • Distinct Intranet Servers: from 3.01, before 3.10 (fixed in 3.10)

Published 2024-06-21. Last modified 2026-06-16.