Open&Compact · Openftpd · CVE-2010-2620
**Name of the Vulnerable Software and Affected Versions**
Open&Compact FTP Server (Open-FTPD) versions 1.2 and earlier
**Description**
The issue allows remote attackers to bypass authentication by sending certain commands without performing the required login steps first, including LIST, RETR, STOR, or other commands.
**Recommendations**
For Open&Compact FTP Server (Open-FTPD) versions 1.2 and earlier, consider disabling remote access until a fix is available, and restrict access to sensitive data to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.