EFTP 2.0.7.337 allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/213647 | mailing list vendor advisory |