Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The default installation of Fastream NETFile FTP/Web Server 7.4.6, which supports FXP, does not require that the IP address in a PORT command be the same as the IP of the logged in user, which allows remote attackers to conduct FTP Bounce attacks to bypass firewall rules or cause a denial of service.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fastream NETFile FTP/Web Server漏洞
Vulnerability Description
支持FXP的Fastream NETFile FTP/Web Server 7.4.6的默认安装,不要求PORT命令中的IP地址和登录用户IP地址一样,远程攻击者可以执行FTP Bounce攻击来绕过防火墙规则或发起拒绝服务攻击。
CVSS Information
N/A
Vulnerability Type
N/A