Vulnerability Description
The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged access.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jasper | Httpdx | 1.4 |
Related Weaknesses (CWE)
References
- http://www.metasploit.com/redmine/projects/framework/repository/revisions/7569/eExploit
- http://www.metasploit.com/redmine/projects/framework/repository/revisions/7569/eExploit
FAQ
What is CVE-2009-4770?
CVE-2009-4770 is a vulnerability with a CVSS score of 7.5 (HIGH). The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged acces...
How severe is CVE-2009-4770?
CVE-2009-4770 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-4770?
Check the references section above for vendor advisories and patch information. Affected products include: Jasper Httpdx.