CVE-2010-2620

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
02/07/2010
Last modified:
11/04/2025

Description

Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST, (2) RETR, (3) STOR, or other commands without performing the required login steps first.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:open-ftpd:open-ftpd:*:*:*:*:*:*:*:* 1.2 (including)
cpe:2.3:a:open-ftpd:open-ftpd:1.0:*:*:*:*:*:*:*