Vulnerabilities > G Rodola > Pyftpdlib > High

DATE CVE VULNERABILITY TITLE RISK
2010-10-19 CVE-2008-7263 Improper Authentication vulnerability in G.Rodola Pyftpdlib
ftpserver.py in pyftpdlib before 0.5.0 does not delay its response after receiving an invalid login attempt, which makes it easier for remote attackers to obtain access via a brute-force attack.
network
low complexity
g-rodola CWE-287
7.5
2010-10-19 CVE-2007-6737 Improper Authentication vulnerability in G.Rodola Pyftpdlib 0.1
FTPServer.py in pyftpdlib before 0.2.0 does not increment the attempted_logins count for a USER command that specifies an invalid username, which makes it easier for remote attackers to obtain access via a brute-force attack.
network
low complexity
g-rodola CWE-287
7.5