6.8
CVSSv2

CVE-2008-0604

Published: 06/02/2008 Updated: 05/09/2008
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The LDAP authentication feature in XLight FTP Server prior to 2.83, when used with some unspecified LDAP servers, does not check for blank passwords, which allows remote malicious users to bypass intended access restrictions.

Vulnerable Product Search on Vulmon Subscribe to Product

xlight ftp server xlight ftp server