CVE-2010-2620: Critical severity open edx vulnerability
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST, (2) RETR, (3) STOR, or other commands without performing the required login steps first.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2620?
CVE-2010-2620 is classified as a high severity vulnerability due to its ability to allow unauthorized access to the Open&Compact FTP Server.
How do I fix CVE-2010-2620?
To fix CVE-2010-2620, upgrade Open&Compact FTP Server to version 1.3 or later where this vulnerability has been addressed.
What are the consequences of exploiting CVE-2010-2620?
Exploiting CVE-2010-2620 can lead to unauthorized access to files and data on the FTP server without authentication.
Who is affected by CVE-2010-2620?
The vulnerability affects all versions of Open&Compact FTP Server up to and including 1.2, allowing remote command execution without login.
How can I determine if my server is vulnerable to CVE-2010-2620?
You can determine vulnerability to CVE-2010-2620 by checking the version of Open&Compact FTP Server running on your system.