CVE-2021-41637 Information

Description

Weak access control permissions in MELAG FTP Server 2.2.0.4 allow the \Everyone\ group to read the local FTP configuration file which includes among other information the unencrypted passwords of all FTP users.

Reference

https://www.securesystems.de/blog/advisory-and-exploitation-the-melag-ftp-server/

Share on: