Summary
The remote FTP server has one or more default test accounts.
Description :
The version of DataWizard FTPXQ that is installed on the remote host has one or more default accounts setup which can allow an attacker to read and/or write arbitrary files on the system.
Solution
Disable or change the password for any unnecessary user accounts.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2006-5569 -
CVSS Base Score: 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:N
Related Vulnerabilities
- Blackmoon FTP PORT Command Denial Of Service Vulnerability
- Wing FTP Server Versions Prior to 3.4.1 Multiple Information Disclosure Vulnerabilities
- vsftpd FTP Server 'ls.c' Remote Denial of Service Vulnerability
- ArGoSoft FTP Server .NET Directory Traversal Vulnerability
- DataWizard FtpXQ Remote Denial of Service Vulnerability