CVE Vulnerabilities

CVE-2001-0768

Published: Oct 18, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.

Affected Software

NameVendorStart VersionEnd Version
GuildftpdSteve_poulsen0.9.7 (including)0.9.7 (including)

References