Insecure FTP Authentication in IRC5

Insecure FTP Authentication in IRC5

CVE-2020-10288 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

IRC5 exposes an ftp server (port 21). Upon attempting to gain access you are challenged with a request of username and password, however you can input whatever you like. As long as the field isn't empty it will be accepted.

Learn more about our Cis Benchmark Audit For Server Software.