Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-1999-1411


Vulnerability Score 7.5 7.5
CVE Id CVE-1999-1411
Last Modified 05 Sep 2008 04:19:27
Published 26 Nov 1998 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE



The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.

Vulnerable Systems

Operating System

  • Debian Linux 2.0


BID - 316

BUGTRAQ - 19981128 Debian: Security flaw in FSP

XF - fsp-anon-ftp-access(7574)

BUGTRAQ - 19990217 Debian GNU/Linux 2.0r5 released (fwd)

BUGTRAQ - 19981130 Debian: Security flaw in FSP

DEBIAN - 19981126 new version of fsp fixes security flaw

Last Updated: 27 May 2016 10:35:24