CVE-2001-1356
NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote attackers to conduct brute force password guessing attacks against the administrator account on port 7021.
Scoring
- CVSS base score
- 0.05
- EPSS probability
- 1.10%
- Published
- 2002-06-11
- Last modified
- 2026-03-16
Affected products
- n/a n/a