Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
proftpd proftpd 1.2.10 vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2006-5815
Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and previous versions allows remote attackers, probably authenticated, to cause a denial of service and execute arbitrary code, as demonstrated by vd_proftpd.pm, a "ProFTPD remote exploit."
Proftpd Project Proftpd
2 EDB exploits
9
CVSSv2
CVE-2011-4130
Use-after-free vulnerability in the Response API in ProFTPD prior to 1.3.3g allows remote authenticated users to execute arbitrary code via vectors involving an error that occurs after an FTP data transfer.
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.3
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.6
Proftpd Proftpd
Proftpd Proftpd 1.2.4
2 Github repositories
1 Article
7.5
CVSSv2
CVE-2006-6170
Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and previous versions, and possibly other products, allows remote malicious users to execute arbitrary code via a large data length argument, a different vulnerability than CVE-...
Proftpd Project Proftpd
7.5
CVSSv2
CVE-2006-6171
ProFTPD 1.3.0a and previous versions does not properly set the buffer size limit when CommandBufferSize is specified in the configuration file, which leads to an off-by-two buffer underflow. NOTE: in November 2006, the role of CommandBufferSize was originally associated with CVE-...
Proftpd Project Proftpd
7.5
CVSSv2
CVE-2005-4816
Buffer overflow in mod_radius in ProFTPD prior to 1.3.0rc2 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long password.
Proftpd Project Proftpd 1.2.0 Rc1
Proftpd Project Proftpd 1.2.0 Rc3
Proftpd Project Proftpd 1.2.4
Proftpd Project Proftpd 1.2.5 Rc1
Proftpd Project Proftpd 1.2.7 Rc3
Proftpd Project Proftpd 1.2.8 Rc1
Proftpd Project Proftpd 1.2.9
Proftpd Project Proftpd 1.2 Pre10
Proftpd Project Proftpd 1.2 Pre2
Proftpd Project Proftpd 1.2 Pre9
Proftpd Project Proftpd 1.2
Proftpd Project Proftpd 1.2.6
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.7 Rc2
Proftpd Project Proftpd 1.2 Pre4
Proftpd Project Proftpd 1.2 Pre5
Proftpd Project Proftpd 1.2 Pre6
Proftpd Project Proftpd 1.2 Pre7
Proftpd Project Proftpd 1.2.10
Proftpd Project Proftpd 1.2.2
Proftpd Project Proftpd 1.2.2 Rc1
7.1
CVSSv2
CVE-2010-3867
Multiple directory traversal vulnerabilities in the mod_site_misc module in ProFTPD prior to 1.3.3c allow remote authenticated users to create directories, delete directories, create symlinks, and modify file timestamps via directory traversal sequences in a (1) SITE MKDIR, (2) S...
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.10
2 Github repositories
1 Article
6.8
CVSSv2
CVE-2010-4652
Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD prior to 1.3.3d, when mod_sql is enabled, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted username containing substitut...
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.3
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.5
Proftpd Proftpd
1 Github repository
6.4
CVSSv2
CVE-2005-2390
Multiple format string vulnerabilities in ProFTPD prior to 1.3.0rc2 allow malicious users to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut, or (2) the SQLShowInfo mod_sql directive.
Proftpd Project Proftpd 1.2.0 Rc1
Proftpd Project Proftpd 1.2.0 Rc2
Proftpd Project Proftpd 1.2.10 Rc3
Proftpd Project Proftpd 1.2.2
Proftpd Project Proftpd 1.2.0 Rc3
Proftpd Project Proftpd 1.2.1
Proftpd Project Proftpd 1.2.2 Rc2
Proftpd Project Proftpd 1.2.2 Rc3
Proftpd Project Proftpd 1.2.6
Proftpd Project Proftpd 1.2.6 Rc1
Proftpd Project Proftpd 1.2.8
Proftpd Project Proftpd 1.2.8 Rc1
Proftpd Project Proftpd 1.2.0 Pre10
Proftpd Project Proftpd 1.2.0 Pre9
Proftpd Project Proftpd 1.2.10 Rc1
Proftpd Project Proftpd 1.2.10 Rc2
Proftpd Project Proftpd 1.2.5
Proftpd Project Proftpd 1.2.5 Rc1
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.9 Rc1
Proftpd Project Proftpd 1.2.9 Rc2
5
CVSSv2
CVE-2011-1137
Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and previous versions allows remote malicious users to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.2.1
Proftpd Proftpd
Proftpd Proftpd 1.2.3
1 EDB exploit
5
CVSSv2
CVE-2004-1602
ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote malicious users to identify valid usernames by timing the server response.
Proftpd Proftpd
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »