NA

CVE-2023-33263

Published: 25/05/2023 Updated: 01/06/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In WFTPD 3.25, usernames and password hashes are stored in an openly viewable wftpd.ini configuration file within the WFTPD directory. NOTE: this is a product from 2006.

Vulnerable Product Search on Vulmon Subscribe to Product

wftpd project wftpd 3.25

Exploits

WFTPD version 325 leaves credentials accessible in wftpdini ...