| VID |
22355 |
| Severity |
40 |
| Port |
80, ... |
| Protocol |
TCP |
| Class |
WWW |
| Detailed Description |
The NETFile Web server uses the default administrative user and password, root/root. Fastream NETFile Server is multi-threaded FTP and Web server for Microsoft Windows 2000/XP/2003. The default account for NFServer engine service is the Local System account. The default password for the user "root" (that is already placed there for you in the initial run) is "root". A remote attacker could exploit this issue to alter the affected application's configuration.
* References: http://www.fastream.com/netfileserverhelp.htm
* Platforms Affected: Fastream Technologies, Fastream NETFile Server Any version Microsoft Windows Any version |
| Recommendation |
Change the administrative user's password with the NETFile GUI.
1. Go to Control Panel -> Administrative Tools -> Services and select the "Fastream NETFile Server" service. 2. Then right click and click on Properties. 3. Select either network account or an administrative account. 4. Change the password for the user, "root" to a strong one. |
| Related URL |
(CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
(ISS) |
|