Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
proftpd vulnerabilities and exploits
(subscribe to this query)
760
VMScore
CVE-2009-0542
SQL injection vulnerability in ProFTPD Server 1.3.1 up to and including 1.3.2rc2 allows remote malicious users to execute arbitrary SQL commands via a "%" (percent) character in the username, which introduces a "'" (single quote) character during variable...
Proftpd Project Proftpd 1.3.1
Proftpd Project Proftpd 1.3.2 Rc2
Proftpd Project Proftpd 1.3.2
2 EDB exploits
725
VMScore
CVE-2000-0824
The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as ...
Gnu Glibc 2.1.1
1 EDB exploit
685
VMScore
CVE-2009-0543
ProFTPD Server 1.3.1, with NLS support enabled, allows remote malicious users to bypass SQL injection protection mechanisms via invalid, encoded multibyte characters, which are not properly handled in (1) mod_sql_mysql and (2) mod_sql_postgres.
Proftpd Proftpd 1.3.1
1 EDB exploit
1 Github repository
680
VMScore
CVE-2006-6563
Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD prior to 1.3.1rc1 allows local users to execute arbitrary code via a large reqarglen length value.
Proftpd Project Proftpd 1.3.0
Proftpd Project Proftpd 1.3.0a
4 EDB exploits
668
VMScore
CVE-2019-12815
An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-2015-3306.
Proftpd Proftpd
Fedoraproject Fedora 29
Fedoraproject Fedora 30
Debian Debian Linux 8.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Siemens Simatic Cp 1543-1 Firmware
2 Github repositories
668
VMScore
CVE-2009-0919
XAMPP installs multiple packages with insecure default passwords, which makes it easier for remote malicious users to obtain access via (1) the "lampp" default password for the "nobody" account within the included ProFTPD installation, (2) a blank default pass...
Apachefriends Xampp 1.6.7
Apachefriends Xampp 1.6.6a
Apachefriends Xampp 1.6.0a
Apachefriends Xampp 1.6.0
Apachefriends Xampp 1.4.16
Apachefriends Xampp 1.6.8
Apachefriends Xampp 1.6.2
Apachefriends Xampp 1.6.1
Apachefriends Xampp 1.5.2
Apachefriends Xampp 1.5.1
Apachefriends Xampp 1.5.0
Apachefriends Xampp 1.4.10
Apachefriends Xampp 1.4.9
Apachefriends Xampp 1.4.2
Apachefriends Xampp 1.4
Apachefriends Xampp 1.6.6
Apachefriends Xampp 0.9
Apachefriends Xampp 0.8.2
Apachefriends Xampp 1.6.3a
Apachefriends Xampp 1.6.3
Apachefriends Xampp 1.5.4
Apachefriends Xampp 1.5.3
668
VMScore
CVE-2006-6170
Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and previous versions, and possibly other products, allows remote malicious users to execute arbitrary code via a large data length argument, a different vulnerability than CVE-...
Proftpd Project Proftpd
668
VMScore
CVE-2006-6171
ProFTPD 1.3.0a and previous versions does not properly set the buffer size limit when CommandBufferSize is specified in the configuration file, which leads to an off-by-two buffer underflow. NOTE: in November 2006, the role of CommandBufferSize was originally associated with CVE-...
Proftpd Project Proftpd
668
VMScore
CVE-2005-4816
Buffer overflow in mod_radius in ProFTPD prior to 1.3.0rc2 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long password.
Proftpd Project Proftpd 1.2.0 Rc1
Proftpd Project Proftpd 1.2.0 Rc3
Proftpd Project Proftpd 1.2.4
Proftpd Project Proftpd 1.2.5 Rc1
Proftpd Project Proftpd 1.2.7 Rc3
Proftpd Project Proftpd 1.2.8 Rc1
Proftpd Project Proftpd 1.2.9
Proftpd Project Proftpd 1.2 Pre10
Proftpd Project Proftpd 1.2 Pre2
Proftpd Project Proftpd 1.2 Pre9
Proftpd Project Proftpd 1.2
Proftpd Project Proftpd 1.2.6
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.7 Rc2
Proftpd Project Proftpd 1.2 Pre4
Proftpd Project Proftpd 1.2 Pre5
Proftpd Project Proftpd 1.2 Pre6
Proftpd Project Proftpd 1.2 Pre7
Proftpd Project Proftpd 1.2.10
Proftpd Project Proftpd 1.2.2
Proftpd Project Proftpd 1.2.2 Rc1
668
VMScore
CVE-2005-2096
zlib 1.2 and later versions allows remote malicious users to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file.
Zlib Zlib 1.2.1
Zlib Zlib 1.2.0
Zlib Zlib 1.2.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »