An issue was discovered in TitanFTP (aka Titan FTP)...
Critical severity
Unreviewed
Published
Jun 20, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jun 19, 2022
Published to the GitHub Advisory Database
Jun 20, 2022
Last updated
Jan 27, 2023
An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050. There is Remote Code Execution due to a hardcoded password for the sa account on the Microsoft SQL Express 2019 instance installed by default during TitanFTP NextGen installation, aka NX-I674 (sub-issue 1).
References