Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Radovan Garabik Subscribe
Filtered by product Pyftpd
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-2072 1 Radovan Garabik 1 Pyftpd 2017-08-16 3.6 LOW N/A
Pyftpd 0.8.4 creates log files with predictable names in a temporary directory, which allows local users to cause a denial of service and obtain sensitive information.
CVE-2010-2073 1 Radovan Garabik 1 Pyftpd 2017-08-16 5.0 MEDIUM N/A
auth_db_config.py in Pyftpd 0.8.4 contains hard-coded usernames and passwords for the (1) test, (2) user, and (3) roxon accounts, which allows remote attackers to read arbitrary files from the FTP server.