In WS_FTP Server versions before 8.8.9 (2022.0.9), an Incorrect Implementation of Authentication Algorithm in the Web Transfer Module allows users to skip the second-factor verification and log in with username and password only.
References
Configurations
No configuration.
History
13 Nov 2024, 17:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 Nov 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-12 17:15
Updated : 2024-11-13 17:01
NVD link : CVE-2024-9999
Mitre link : CVE-2024-9999
CVE.ORG link : CVE-2024-9999
JSON object : View
Products Affected
No product.
CWE
CWE-303
Incorrect Implementation of Authentication Algorithm