CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable.
CVE
CVE-2001-1356
Severity
HIGH
CVSS
10
EPSS
3.82%
Original NVD Description
NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote attackers to conduct brute force password guessing attacks against the administrator account on port 7021.