Vulnerability Description
WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ipswitch | Ws Ftp Pro | 6.0 |
References
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9907&L=ntbugtraq&D=0&P=1Vendor Advisory
- http://www.securityfocus.com/bid/547
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9907&L=ntbugtraq&D=0&P=1Vendor Advisory
- http://www.securityfocus.com/bid/547
FAQ
What is CVE-1999-1078?
CVE-1999-1078 is a vulnerability with a CVSS score of 7.5 (HIGH). WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges.
How severe is CVE-1999-1078?
CVE-1999-1078 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1078?
Check the references section above for vendor advisories and patch information. Affected products include: Ipswitch Ws Ftp Pro.