The default configuration of DataWizard FtpXQ 2.0 and 2.1 includes a default username and password, which allows remote attackers to read and write arbitrary files in the root folder.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ftpxq | Datawizard | 2.0 | 2.0 |
Ftpxq | Datawizard | 2.1 | 2.1 |