Mini Core SFTP vulnerabilities found

Report bugs or issues with Core FTP Mini Server here
Post Reply
nfalke
Posts: 1
Joined: Wed Feb 03, 2016 6:59 am

Mini Core SFTP vulnerabilities found

Post by nfalke »

The below mentioned vulnerabilities were found in Mini Core SFTP server:

1. SSH Server CBC Mode Ciphers Enabled

2. SSH Weak MAC Algorithms Enabled

Please provide the resolutions if any.
Sudhir
Posts: 2
Joined: Wed Feb 03, 2016 7:13 am

Mini Server Issues

Post by Sudhir »

Yes. We also facing the same issue as our IS team found the same vulnerabilities, which need resolutions. Please reply with solutions asap. Hoping for quick and positive reply from Core FTP team.
ForumAdmin
Site Admin
Posts: 979
Joined: Mon Mar 24, 2003 4:37 am

Post by ForumAdmin »

Look for an updated build in the next week or two...
ForumAdmin
Site Admin
Posts: 979
Joined: Mon Mar 24, 2003 4:37 am

Post by ForumAdmin »

version 2.0 now available - coreftp.com/server
Sudhir
Posts: 2
Joined: Wed Feb 03, 2016 7:13 am

Post by Sudhir »

We have installed mini core sftp latest version as you have suggested. But still both the vulnerabilities are exist.

Kindly provide solution to resolve the vulnerabilities.
cp
Posts: 124
Joined: Sun Sep 11, 2011 5:18 am

Post by cp »

Is this after checking the "FIPS mode" option?

If so, please indicate the vulnerabilities that were detected...
Post Reply