Windows FTP Server NULL Administrator Password

critical Nessus Plugin ID 11160

Synopsis

Arbitrary files may be read, written or deleted on the remote host.

Description

The remote server is incorrectly configured with a NULL password for the user 'Administrator' and has FTP enabled.

Solution

Change the Administrator password on this host.

Plugin Details

Severity: Critical

ID: 11160

File Name: ftp_administrator.nasl

Version: Revision: 1.13

Type: remote

Family: FTP

Published: 11/21/2002

Updated: 1/25/2013

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C