Security Advisory

CVE-2001-1356

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-06-11 04:00:00
Last updated 2024-08-08 04:51:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote attackers to conduct brute force password guessing attacks against the administrator account on port 7021.