Bugtraq mailing list archives

Re: Gene6 FTP Server Local Privilege Escalation Vulnerability


From: Matthieu <gene6 () gene6 com>
Date: 8 Mar 2005 03:18:47 -0000

In-Reply-To: <5ed07f7a05030708092d774ef8 () mail gmail com>

(4) Vendor Reply

Reply from the support () G6FtpServer com
[..]

Here is a copy of our first reply with the solution :

- create a new administrator account
- in Administration / Properties, uncheck Options / Allow all access to localhost.

Do not forget to adjust the "local machine" properties to use the new administration account.

-

The installer will be updated to ask for an administrator account in the next version.

Until then, if needed, the administrators can apply the solution above if running in a multi-users environment.

Matthieu


Current thread: