ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward resolution, which allows remote malicious users to bypass ACLs or cause an incorrect client hostname to be logged.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
proftpd project proftpd 1.2 pre10 |
||
proftpd project proftpd 1.2 pre5 |
||
proftpd project proftpd 1.2.1 |
||
proftpd project proftpd 1.2 pre2 |
||
proftpd project proftpd 1.2 |
||
proftpd project proftpd 1.2 pre8 |
||
proftpd project proftpd 1.2 pre7 |
||
proftpd project proftpd 1.2 pre6 |
||
proftpd project proftpd 1.2 pre4 |
||
proftpd project proftpd 1.2 pre1 |
||
proftpd project proftpd 1.2.2 rc1 |
||
proftpd project proftpd 1.2.2 rc2 |
||
proftpd project proftpd 1.2.0 rc3 |
||
proftpd project proftpd 1.2 pre9 |
||
proftpd project proftpd 1.2 pre11 |
||
proftpd project proftpd 1.2 pre3 |
||
proftpd project proftpd 1.2.2 |