Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Anonymous FTP Login Reporting

Information

Severity

Severity

Medium

Family

Family

FTP

CVSSv2 Base

CVSSv2 Base

6.4

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:N

Solution Type

Solution Type

Mitigation

Created

Created

5 years ago

Modified

Modified

5 years ago

Summary

Reports if the remote FTP Server allows anonymous logins.

Insight

Insight

A host that provides an FTP service may additionally provide Anonymous FTP access as well. Under this arrangement, users do not strictly need an account on the host. Instead the user typically enters 'anonymous' or 'ftp' when prompted for username. Although users are commonly asked to send their email address as their password, little to no verification is actually performed on the supplied data.

Solution

Solution

If you do not want to share files, you should disable anonymous logins.