CVE-2009-4770

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
20/04/2010
Last modified:
11/04/2025

Description

The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jasper:httpdx:1.4:*:*:*:*:*:*:*
cpe:2.3:a:jasper:httpdx:1.4.5:*:*:*:*:*:*:*
cpe:2.3:a:jasper:httpdx:1.4.6:*:*:*:*:*:*:*
cpe:2.3:a:jasper:httpdx:1.4.6b:*:*:*:*:*:*:*
cpe:2.3:a:jasper:httpdx:1.5:*:*:*:*:*:*:*