inc.login.php in PHPsFTPd 0.2 through 0.4 allows remote attackers to obtain the administrators username and password by setting the do_login parameter and performing an edit action using user.php, which causes the login check to be bypassed and leaks the password in the response.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpsftpd | Phpsftpd | 0.2 (including) | 0.2 (including) |
Phpsftpd | Phpsftpd | 0.4 (including) | 0.4 (including) |