PFTP Default Unpassworded Account

This script is Copyright (C) 2000-2013 Tenable Network Security, Inc.


Synopsis :

It is possible to login to the remote system with an unpassworded
account.

Description :

It is possible to log into the remote FTP server as ' ' / ' '. If
the remote server is PFTP, then anyone can use this account to read
arbitrary files on the remote host.

Solution :

Upgrade PFTP to version 2.9g or later.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)

Family: FTP

Nessus Plugin ID: 10508 ()

Bugtraq ID:

CVE ID: