Download Netsparker
Pricing
Blog
Contact
Netsparker

WS_FTP Client Log File (ws_ftp.log) Detected

Netsparker detected a WS_FTP log file.

WS_FTP is an FTP client and it creates a log file named WS_FTP.Log, which contains sensitive information such as file names, internal paths, etc.

Impact

There is no direct impact, however this information can help an attacker identify other vulnerabilities or help during the exploitation of other identified vulnerabilities.

Remedy

If it is a file required by the application, change its permissions to prevent public users from accessing it. If it is not, then remove it from the web server.

External References


Go back to the Complete list of Vulnerability Checks.