CVE-2004-0042
EPSS 0.50%Published: 2/3/2004Modified: 4/28/2026
Also known as:DEBIAN-CVE-2004-0042
Description
vsftpd 1.1.3 generates different error messages depending on whether or not a valid username exists, which allows remote attackers to identify valid usernames.
Affected packages (1)
- Debian/vsftpdfrom 0, < 2.0.1-1