CVE
- Id
- 3914
- CVE No.
- CVE-2001-1110
- Status
- Candidate
- Description
- EFTP 2.0.7.337 allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.
- Phase
- Proposed (20020315)
- Votes
- ACCEPT(1) Green | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese
- Comments
- Frech> XF:eftp-list-directory-traversal(7113) | In description, NETBIOS should be NetBIOS.