| VID |
16122 |
| Severity |
40 |
| Port |
21 |
| Protocol |
TCP |
| Class |
FTP |
| Detailed Description |
The FtpXQ FTP server has one or more default test accounts. FtpXQ 3.0.1 creates two testing accounts by default. An attacker can access these accounts to gain read/write privileges on the server, which could result in the compromise of the affected host.
* References: http://attrition.org/pipermail/vim/2006-November/001107.html
* Platforms Affected: DataWizard Technologies, FtpXQ 3.0.1 Microsoft Windows Any version |
| Recommendation |
If it is not required, please remove default account, or change the password to something difficult to guess. |
| Related URL |
CVE-2006-5569 (CVE) |
| Related URL |
20721 (SecurityFocus) |
| Related URL |
29978 (ISS) |
|