FTP Attack - Passive Port Scan

high Nessus Network Monitor Plugin ID 6216


An FTP user issued a successful passive port request which enumerated a port less than 1024, and other than 21 or 20.


An FTP user issued a successful passive port request which enumerated a port less than 1024, and other than 21 or 20. This may indicate that your FTP server is being used for port scanning by hackers who wish to hide their identity or possibly mail spammers who are looking for open port 25 devices.


Inspect and repair this vulnerability

Plugin Details

Severity: High

ID: 6216

Family: Generic

Published: 1/6/2012

Updated: 6/1/2015