Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qc2-2rhf-vf42

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response.

ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response.

EPSS

Процентиль: 74%
0.0083
Низкий

Дефекты

CWE-203

Связанные уязвимости

nvd
около 21 года назад

ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response.

debian
около 21 года назад

ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amo ...

EPSS

Процентиль: 74%
0.0083
Низкий

Дефекты

CWE-203