Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2001-1356
Description:NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote attackers to conduct brute force password guessing attacks against the administrator account on port 7021.
Test IDs: 1.3.6.1.4.1.25623.1.0.52040  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2001-1356
BugTraq ID: 3157
http://www.securityfocus.com/bid/3157
Bugtraq: 20010804 SurgeFTP admin account bruteforcable (Google Search)
http://online.securityfocus.com/archive/1/201951
XForce ISS Database: surgeftp-weak-password-encryption(6961)
http://www.iss.net/security_center/static/6961.php




© 1998-2025 E-Soft Inc. All rights reserved.