First published: Thu Jul 29 1999(Updated: )
WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ipswitch WS FTP | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1078 is considered a high severity vulnerability due to weak encryption used for passwords.
To fix CVE-1999-1078, upgrade to a newer version of WS_FTP Pro that utilizes stronger encryption methods.
The potential impacts of CVE-1999-1078 include unauthorized access to sensitive information and elevated privileges for attackers.
WS_FTP Pro version 6.0 is specifically affected by CVE-1999-1078.
Yes, CVE-1999-1078 can be exploited remotely due to weak password encryption in initialization files.