CVE-2009-4770: High severity Jasper Httpdx vulnerability
Published Apr 20, 2010
·Updated
The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged access.
Affected Software
5 affected components
Jasper Httpdx=1.4
Jasper Httpdx=1.4.5
Jasper Httpdx=1.4.6
Jasper Httpdx=1.4.6b
Jasper Httpdx=1.5
Event History
Apr 20, 2010
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·02:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-4770?
CVE-2009-4770 is considered a high severity vulnerability due to the default moderation password allowing unauthorized access.
2
How do I fix CVE-2009-4770?
To fix CVE-2009-4770, change the default password 'pass123' for the moderator account to a strong, unique password.
3
What software is affected by CVE-2009-4770?
CVE-2009-4770 affects Jasper Httpdx versions 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5.
4
Can CVE-2009-4770 be exploited remotely?
Yes, CVE-2009-4770 can be exploited remotely due to the use of a default password.
5
Is there a patch available for CVE-2009-4770?
There is no specific patch for CVE-2009-4770, but changing the default password will mitigate the risk.