CVE-2010-2968: High severity wind river vxworks vulnerability
The FTP daemon in Wind River VxWorks does not close the TCP connection after a number of failed login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2968?
CVE-2010-2968 is considered a medium severity vulnerability due to its potential for abuse in brute-force attacks.
How do I fix CVE-2010-2968?
To fix CVE-2010-2968, ensure that the FTP daemon is configured to limit the number of failed login attempts and properly close TCP connections.
What versions of Wind River VxWorks are affected by CVE-2010-2968?
CVE-2010-2968 affects Wind River VxWorks versions 5.0 to 6.8.
What is the nature of the vulnerability in CVE-2010-2968?
The vulnerability in CVE-2010-2968 stems from the FTP daemon not terminating TCP connections after multiple failed login attempts.
Who is impacted by CVE-2010-2968?
Organizations using affected versions of Wind River VxWorks for their systems might be impacted by CVE-2010-2968.