MPEi/X Default FTP Accounts

Critical Nessus Plugin ID 11000

Synopsis

The remote FTP server has one or more account with a blank password.

Description

The remote FTP server has one or more accounts with a blank password.

Solution

Apply complex passwords to all accounts.

Plugin Details

Severity: Critical

ID: 11000

File Name: DDI_MPEiX_FTP_Accounts.nasl

Version: 1.22

Type: remote

Family: FTP

Published: 2002/06/05

Updated: 2018/07/25

Dependencies: 10092, 17975

Risk Information

Risk Factor: Critical

CVSS v2.0

Base Score: 10

Temporal Score: 8.1

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:POC/RL:TF/RC:C

Vulnerability Information

Exploit Available: false

Exploit Ease: No exploit is required

Vulnerability Publication Date: 2001/01/01

Exploitable With

Metasploit (SSH User Code Execution)

Reference Information

CVE: CVE-1999-0502