CVE Vulnerabilities

CVE-2001-0768

Published: Oct 18, 2001 | Modified: Dec 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.

Affected Software

Name Vendor Start Version End Version
Guildftpd Steve_poulsen 0.9.7 (including) 0.9.7 (including)

References