Loading
Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via a logLogout action to FTPLogServer/login.asp followed by a request to FTPLogServer/LogViewer.asp with the localhostnull account name.
Use CWE-287, Ipswitch vendor hub and Ws Ftp product page to widen CVE-2008-5692 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-16513, CVE-2007-3823 and CVE-2007-2213 for nearby disclosures in the same product family.