CVE Database · CVE-2008-7263
CVSS v3.1
N/A
EPSS
1.56%
Published
Oct 19, 2010
Modified
Apr 28, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
ftpserver.py in pyftpdlib before 0.5.0 does not delay its response after receiving an invalid login attempt, which makes it easier for remote attackers to obtain access via a brute-force attack.
Weaknesses (CWE)
Affected Products (5)
References (8)