ProFTPD Login Timing Account Name Enumeration

medium Nessus Plugin ID 15484

Synopsis

The remote FTP server may disclose the list of valid usernames.

Description

The remote ProFTPd server is as old or older than 1.2.10

It is possible to determine which user names are valid on the remote host based on timing analysis attack of the login procedure.

An attacker may use this flaw to set up a list of valid usernames for a more efficient brute-force attack against the remote host.

Solution

Upgrade to a newer version.

Plugin Details

Severity: Medium

ID: 15484

File Name: proftpd_user_enum.nasl

Version: 1.19

Type: remote

Family: FTP

Published: 10/17/2004

Updated: 7/25/2018

Configuration: Enable paranoid mode

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.2

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.9

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/a:proftpd:proftpd

Required KB Items: Settings/ParanoidReport, ftp/proftpd

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 10/15/2004

Reference Information

CVE: CVE-2004-1602

BID: 11430