Cuteftp Uses Weak Encryption To Store Password vulnerability report
vulnerabilities.aspcode.net
Phase:
CuteFTP uses weak encryption to store password information in its tree.dat file.
References
BUGTRAQ:Wednesday, January 05, 2000 CuteFTP saved password 'encryption' weakness
Votes:
Proposed (Tuesday, January 25, 2000)
Comments:
MODIFY(2) Baker, Frech | NOOP(1) Christey
F7:
Frech> XF:cuteftp-weak-encrypt(3910) | Christey> BUGTRAQ:20010823 Re: Respondus v1.1.2 stores passwords using weak encryption | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=99861651923668&w=2 | This followup to a different thread mentions the sm.dat file | for the site manager. | Baker> The reference from the Bugtraq mentions the sm.dat uses better encryption, but doesn't really address the tree.dat file.
Tagged as
information
encryption
password
treedat
CuteFTP
store
uses
file
weak
its