FTP directories writable |
---|
Risk Level: | Medium | Check or Attack Name: ftpwrite |
---|---|---|
Platforms: | FTP | |
Description: | Writable FTP directories were detected. These directories can be used as drop points for unauthorized or illegal material. An attacker can write files, such as .rhosts, that could provide access to the machine. It is also possible to inflict a denial of service attack by filling up the hard disk. |
|
Remedy: | Remove main directory write permissions. |
|
References: | CIAC Information Bulletin D-19, Wide-spread Attacks on Anonymous FTP Servers, http://ciac.llnl.gov/ciac/bulletins/d-19.shtml |
Know Your Risks |