The LDAP authentication feature in XLight FTP Server before 2.83, when used with some unspecified LDAP servers, does not check for blank passwords, which allows remote attackers to bypass intended access restrictions.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:14:09

Updated: 2022-10-03T16:14:09

Reserved: 2022-10-03T00:00:00


Link: CVE-2008-0604

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2008-02-06T12:00:00.000

Modified: 2008-09-05T21:35:31.290


Link: CVE-2008-0604

JSON object: View

cve-icon Redhat Information

No data.

CWE