This script is Copyright (C) 2002-2011 Tenable Network Security, Inc.
The remote FTP server is affected by an information disclosure
The version of EFTP installed on the remote host reveals its
installation directory if sent a request for a nonexistent file. An
authenticated attacker may leverage this flaw to gain more knowledge
about the affected host, such as its filesystem layout.
See also :
Upgrade to version 3.2 or higher, as it has been reported to fix this
Risk factor :
Medium / CVSS Base Score : 4.0
CVSS Temporal Score : 3.8
Public Exploit Available : true
Nessus Plugin ID: 11093 (eftp_root_disclosure.nasl)
Bugtraq ID: 3333