← Back

CVE-2008-5692

nvd nist
Published: Dec 19, 2008Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via a logLogout action to FTPLogServer/login.asp followed by a request to FTPLogServer/LogViewer.asp with the localhostnull account name.

Affected (22)

Products: Ipswitch: Ws Ftp
1 product
Ws Ftp
Configuration A
22 vulnerable
Vulnerable SoftwareAffected Versions
Ipswitch
Up to 6.1
Version 1.0.5
Version 2.01
Version 2.02
Version 2.03
Version 3.0.1
Version 3.0
Version 3.1.0
Version 3.1.1
Version 3.1.2
Version 3.1.3
Version 3.14
Version 4.00
Version 4.01
Version 4.02
Version 5.00
Version 5.01
Version 5.02
Version 5.03
Version 5.04
Version 5.05
Version 6.0

Timeline

No history available yet.