{"id":"DEBIAN-CVE-2011-1409","details":"Frams's Fast File EXchange (F*EX, aka fex) 20100208, and possibly other versions before 20110610, allows remote attackers to bypass authentication and upload arbitrary files via a request that lacks an authentication ID.","modified":"2026-09-24T04:47:19.772554847Z","published":"2011-06-24T20:55:02.967Z","upstream":["CVE-2011-1409"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2011-1409"}],"affected":[{"package":{"name":"fex","ecosystem":"Debian:12","purl":"pkg:deb/debian/fex?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20110610-1"}]}],"versions":["20110601-1","20110608-1","20110608-2"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2011-1409.json"}},{"package":{"name":"fex","ecosystem":"Debian:13","purl":"pkg:deb/debian/fex?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20110610-1"}]}],"versions":["20110601-1","20110608-1","20110608-2"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2011-1409.json"}}],"schema_version":"1.9.0"}