VID |
16122 |
Severity |
40 |
Port |
21 |
Protocol |
TCP |
Class |
FTP |
Detailed Description |
The FtpXQ FTP server has one or more default test accounts. FtpXQ 3.0.1 creates two testing accounts by default. An attacker can access these accounts to gain read/write privileges on the server, which could result in the compromise of the affected host.
* References: http://attrition.org/pipermail/vim/2006-November/001107.html
* Platforms Affected: DataWizard Technologies, FtpXQ 3.0.1 Microsoft Windows Any version |
Recommendation |
If it is not required, please remove default account, or change the password to something difficult to guess. |
Related URL |
CVE-2006-5569 (CVE) |
Related URL |
20721 (SecurityFocus) |
Related URL |
29978 (ISS) |
|