Medium severity6.5NVD Advisory· Published Nov 12, 2024· Updated Apr 15, 2026
CVE-2024-9999
CVE-2024-9999
Description
In WS_FTP Server versions before 8.8.9 (2022.0.9), an Incorrect Implementation of Authentication Algorithm in the Web Transfer Module allows users to skip the second-factor verification and log in with username and password only.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.