CVE-2012-5301: Cerberusftp FTP Server
Medium severity, CVSS 5.0. EPSS: 1.2% chance of exploitation in the next 30 days.
The default configuration of Cerberus FTP Server before 5.0.4.0 supports the DES cipher for SSH sessions, which makes it easier for remote attackers to obtain sensitive information by sniffing the network and performing a brute-force attack on the encrypted data.
Affected products
- Cerberusftp FTP Server: up to and including 5.0.3.1; version 1.0 only; version 1.01 only; version 1.1 only; version 1.2 only; version 1.02 only; …
Published 2012-10-04. Last modified 2026-06-16.