cve/2008/CVE-2008-5692.md
2024-06-18 02:51:15 +02:00

748 B

CVE-2008-5692

Description

Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via a logLogout action to FTPLogServer/login.asp followed by a request to FTPLogServer/LogViewer.asp with the localhostnull account name.

POC

Reference

Github

No PoCs found on GitHub currently.