vuln.sg  AlizadeВ Kalbin Bana KaldД± Ft Bege

vuln.sg Vulnerability Research Advisory

AceFTP FTP-Client Directory Traversal Vulnerability

by Tan Chew Keong
Release Date: 2008-06-27

AlizadeВ Kalbin Bana KaldД± Ft Bege   [en] [jp]

AlizadeВ Kalbin Bana KaldД± Ft Bege Summary

A vulnerability has been found within the FTP client in AceFTP. When exploited, this vulnerability allows an anonymous attacker to write files to arbitrary locations on a Windows user's system.


AlizadeВ Kalbin Bana KaldД± Ft Bege Tested Versions


AlizadeВ Kalbin Bana KaldД± Ft Bege Details

This advisory discloses a vulnerability within the FTP client in AceFTP. When exploited, this vulnerability allows an anonymous attacker to write files to arbitrary locations on a Windows user's system.

The FTP client does not properly sanitise filenames containing directory traversal sequences (forward-slash) that are received from an FTP server in response to the LIST command.

An example of such a response from a malicious FTP server is shown below.


Response to LIST (forward-slash):

-rw-r--r--    1 ftp      ftp            20 Mar 01 05:37 /../../../../../../../../../testfile.txt\r\n
 

By tricking a user to download a directory from a malicious FTP server that contains files with fowward-slash directory traversal sequences in their filenames, it is possible for the attacker to write files to arbitrary locations on a user's system with privileges of that user. An attacker can potentially leverage this issue to write files into a user's Windows Startup folder and execute arbitrary code when the user logs on.


AlizadeВ Kalbin Bana KaldД± Ft Bege POC / Test Code

Please download the POC here and follow the instructions below.

Alizadeв Kalbin Bana Kaldд± Ft Bege Apr 2026

Whether you’re a long-time fan of the Turkish rap scene or just looking for a new track to add to your workout or party playlist, "Kalbin Bana Kaldı" is a must-listen. It’s catchy, it’s stylish, and it’s a testament to the creative energy currently flowing through the industry.

The Ultimate Collaboration: Alizade & BEGE Join Forces for "Kalbin Bana Kaldı" AlizadeВ Kalbin Bana KaldД± Ft Bege

When two of the most influential figures in the modern Turkish and global hip-hop scenes collide, the result is bound to be explosive. and BEGE (Berkcan Güven) have officially dropped their highly anticipated track, "Kalbin Bana Kaldı," and it is everything fans hoped for—a sleek, high-energy anthem that blends Alizade’s signature nonchalant flow with BEGE’s undeniable charisma. A Match Made in Musical Heaven Whether you’re a long-time fan of the Turkish

The title, which translates to "Your Heart Stayed with Me," hints at a story of lingering attraction and the power dynamics of a modern relationship—wrapped in layers of bravado and confidence. Why It Matters and BEGE (Berkcan Güven) have officially dropped their

The track leans into a dark, club-ready aesthetic. It’s the kind of song that feels at home in a late-night drive through the city or a packed underground club.

What makes this collaboration work is the vocal contrast. Alizade’s delivery is cool and detached, providing a perfect counterpoint to BEGE’s more melodic and rhythmic approach.

The production on "Kalbin Bana Kaldı" is crisp, featuring a bass-heavy beat that demands a high-quality sound system.


AlizadeВ Kalbin Bana KaldД± Ft Bege Patch / Workaround

Avoid downloading files/directories from untrusted FTP servers.


AlizadeВ Kalbin Bana KaldД± Ft Bege Disclosure Timeline

2008-06-15 - Vulnerability Discovered.
2008-06-16 - Vulnerability Details Sent to Vendor via online support form (no reply).
2008-06-18 - Vulnerability Details Sent to Vendor again via online support form (no reply).
2008-06-25 - Vulnerability Details Sent to Vendor again via online support form (no reply).
2008-06-27 - Public Release.


Contact
For further enquries, comments, suggestions or bug reports, simply email them to