Security Advisory

CVE-2010-2073

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-06-16 20:00:00
Last updated 2024-08-07 02:17:13
Assigner redhat
State PUBLISHED

Description

auth_db_config.py in Pyftpd 0.8.4 contains hard-coded usernames and passwords for the (1) test, (2) user, and (3) roxon accounts, which allows remote attackers to read arbitrary files from the FTP server.