20001029 Brute Forcing FTP Servers with enabled anti-hammering (anti brute-force) modusmailing list
http://www.securityfocus.com/archive/1/141905 CVE-2000-1033
Cat Soft Serv-U FTP Server 2.5.x - Brute Force
Record summary
CVE-2000-1033 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCat Soft Serv-U FTP Server 2.5.x - Brute ForceExploitDB exploitby CraigNot analyzed1 file
References
41860vdb entry
http://www.securityfocus.com/bid/1860 ftp-servu-brute-force(5436)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5436 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-1033