From the
advisory:
"A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.
The vulnerability is caused due to an error in the Windows FTP client in validating the name of a downloaded file. This can be exploited to write files into arbitrary locations on an affected system.
Successful exploitation requires that the user is e.g. tricked into downloading a file with a specially-crafted filename from an FTP server."
DANGER: moderately critical
SOLUTION: use Windows Update to apply specific patches