CVE-2005-2599: Weak Encryption
Published Aug 17, 2005
·Updated
Hummingbird FTP for Connectivity 10.0 uses weak encryption (trivial encoding) to store the user's password in the FTP profile, which allows attackers to gain privileges.
Affected Software
1 affected component
Hummingbird Connectivity=10.0
Event History
Aug 17, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2599?
CVE-2005-2599 is considered a high severity vulnerability due to the use of weak encryption for storing user passwords.
2
How do I fix CVE-2005-2599?
To fix CVE-2005-2599, upgrade to a more secure version of Hummingbird FTP that addresses the encryption weaknesses.
3
What type of attack can exploit CVE-2005-2599?
CVE-2005-2599 can be exploited by attackers who gain access to the FTP profile and retrieve weakly encrypted passwords.
4
Which software is affected by CVE-2005-2599?
CVE-2005-2599 specifically affects Hummingbird Connectivity version 10.0.
5
What are the implications of CVE-2005-2599 for users?
Users affected by CVE-2005-2599 may face unauthorized access to their FTP accounts due to weak password storage.