Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
FTPServer.py in pyftpdlib before 0.2.0 does not increment the attempted_logins count for a USER command that specifies an invalid username, which makes it easier for remote attackers to obtain access via a brute-force attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
G.rodola pyftpdlib FTPServer.py文件attempted_logins计数授权问题漏洞
Vulnerability Description
pyftpdlib(Python FTP server library)提供了高级的可移植的编程接口,用来实现异步的FTP服务器的功能。 pyftpdlib 0.2.0之前版本中的FTPServer.py文件中不能为带有指定无效用户名的USER命令增加attempted_logins计数。远程攻击者更容易借助暴力攻击进行访问。
CVSS Information
N/A
Vulnerability Type
N/A