Security Advisory

CVE-2004-1602

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-02-20 05:00:00
Last updated 2024-08-08 01:00:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response.