CVE-2001-1356

Publication date

2002-06-11 04:00:00

Family

mitre

State

PUBLISHED

Description

NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote attackers to conduct brute force password guessing attacks against the administrator account on port 7021.