VYPR
High severity7.5NVD Advisory· Published Jun 24, 2022· Updated Jun 17, 2026

CVE-2021-41638

CVE-2021-41638

Description

The authentication checks of the MELAG FTP Server in version 2.2.0.4 are incomplete, which allows a remote attacker to access local files only by using a valid username.

Affected products

3
  • MELAG/FTP Servercpe-rescue3 versions
    (expand)+ 2 more
    • (no CPE)
    • (no CPE)range: =2.2.0.4
    • cpe:2.3:a:melag:ftp_server:2.2.0.4:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.