PFTP Default Unpassworded Account

This script is Copyright (C) 2000-2017 Tenable Network Security, Inc.


Synopsis :

It was possible to login to the remote system with an unpassworded
account.

Description :

It was possible to log into the remote FTP server as ' ' / ' '. If the
remote server is PFTP, then anyone can use this account to read
arbitrary files on the remote host.

Solution :

Upgrade PFTP to version 2.9g or later.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
Public Exploit Available : true

Family: FTP

Nessus Plugin ID: 10508 ()

Bugtraq ID:

CVE ID:

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now