CVE-2010-2620
43Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 29%
from disclosure to weapon0 days
Published on NVDJul 2
1st PoCJun 18
metasploit+717d
exploitation probability
29%top 2% of all CVEs
observed exploitation
nono source reports it
4 public exploit(s)
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST, (2) RETR, (3) STOR, or other commands without performing the required login steps first.
Affected products
n/a · n/apublic PoCs found — 4
cve_referencewww.exploit-db.com/exploits/13932unverifiedexploitdbwww.exploit-db.com/exploits/27401unverifiedexploitdbwww.exploit-db.com/exploits/13932unverifiedexploitdbwww.exploit-db.com/exploits/27556unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.