Nessus.org: 2.2 Beta bug?

Think you've found a bug in a BETA version of Cerberus FTP Server? Post a description here.
Locked
Tuxman
New User
Posts: 8
Joined: Mon May 10, 2004 9:25 pm
Location: Germany
Contact:

Nessus.org: 2.2 Beta bug?

Post by Tuxman » Sat Aug 21, 2004 7:18 pm

Hi,
I've just scanned my system (with the running CerberusFTP 2.2 Beta) for security holes, then got the following message:
It is possible to force the FTP server
to connect to third parties hosts, by using the PORT command.
Any clue? :-?
m00 ;)

User avatar
Serin
Site Administrator
Posts: 1785
Joined: Sat Jan 01, 2005 6:57 pm
Location: United States
Contact:

Post by Serin » Tue Aug 31, 2004 12:06 am

Hello, this is not a bug. Disable "FXP Transfers" from the Server Manager's Advanced tab.

Tuxman
New User
Posts: 8
Joined: Mon May 10, 2004 9:25 pm
Location: Germany
Contact:

Post by Tuxman » Wed Sep 01, 2004 11:51 am

I thought this option would deny FlashXP to connect? :-?

However, thank you... :)
m00 ;)

Locked