The default configuration of DataWizard FtpXQ 2.0 and 2.1 includes a default username and password, which allows remote attackers to read and write arbitrary files in the root folder.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ftpxq | Datawizard | 2.0 (including) | 2.0 (including) |
Ftpxq | Datawizard | 2.1 (including) | 2.1 (including) |