CVE-2001-1414: High severity Sun Solaris vulnerability
The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1414?
CVE-2001-1414 is considered to have a moderate severity level due to its potential to allow remote attackers to hide their activities.
How do I fix CVE-2001-1414?
To fix CVE-2001-1414, you should upgrade to a version of Solaris that logs anonymous FTP access.
What versions are affected by CVE-2001-1414?
CVE-2001-1414 affects Solaris versions 2.5.1, 2.6, 7.0, and 8.0, among others.
Is anonymous FTP logging enabled by default in Solaris?
No, anonymous FTP logging is not enabled by default in the affected versions of Solaris.
What are the risks associated with CVE-2001-1414?
The primary risk of CVE-2001-1414 is that it allows attackers to exploit FTP access without detection, which can lead to unauthorized activities.