Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
proftpd proftpd 1.2.9 vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2004-0346
Off-by-one buffer overflow in _xlate_ascii_write() in ProFTPD 1.2.7 up to and including 1.2.9rc2p allows local users to gain privileges via a 1024 byte RETR command.
Proftpd Proftpd 1.2.9
Proftpd Proftpd
NA
CVE-2012-6095
ProFTPD prior to 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary files via a race condition and a symlink attack on the (1) MKD or (2) XMKD commands.
Proftpd Proftpd
Proftpd Proftpd 1.3.4
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.2.3
NA
CVE-2011-4130
Use-after-free vulnerability in the Response API in ProFTPD prior to 1.3.3g allows remote authenticated users to execute arbitrary code via vectors involving an error that occurs after an FTP data transfer.
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.3
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.6
Proftpd Proftpd
Proftpd Proftpd 1.2.4
2 Github repositories
1 Article
NA
CVE-2011-1137
Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and previous versions allows remote malicious users to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.2.1
Proftpd Proftpd
Proftpd Proftpd 1.2.3
1 EDB exploit
NA
CVE-2010-4652
Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD prior to 1.3.3d, when mod_sql is enabled, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted username containing substitut...
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.3.3
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.3
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.2.2
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.5
Proftpd Proftpd
1 Github repository
NA
CVE-2008-7265
The pr_data_xfer function in ProFTPD prior to 1.3.2rc3 allows remote authenticated users to cause a denial of service (CPU consumption) via an ABOR command during a data transfer.
Proftpd Proftpd 1.3.2
Proftpd Proftpd 1.3.0
Proftpd Proftpd 1.2.10
Proftpd Proftpd 1.2.9
Proftpd Proftpd 1.2.7
Proftpd Proftpd 1.2.5
Proftpd Proftpd 1.2.1
Proftpd Proftpd 1.2.0
Proftpd Proftpd 1.3.1
Proftpd Proftpd 1.2.8
Proftpd Proftpd 1.2.2
Proftpd Proftpd
Proftpd Proftpd 1.2.6
Proftpd Proftpd 1.2.4
Proftpd Proftpd 1.2.3
NA
CVE-2005-4816
Buffer overflow in mod_radius in ProFTPD prior to 1.3.0rc2 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long password.
Proftpd Project Proftpd 1.2.0 Rc1
Proftpd Project Proftpd 1.2.0 Rc3
Proftpd Project Proftpd 1.2.4
Proftpd Project Proftpd 1.2.5 Rc1
Proftpd Project Proftpd 1.2.7 Rc3
Proftpd Project Proftpd 1.2.8 Rc1
Proftpd Project Proftpd 1.2.9
Proftpd Project Proftpd 1.2 Pre10
Proftpd Project Proftpd 1.2 Pre2
Proftpd Project Proftpd 1.2 Pre9
Proftpd Project Proftpd 1.2
Proftpd Project Proftpd 1.2.6
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.7 Rc2
Proftpd Project Proftpd 1.2 Pre4
Proftpd Project Proftpd 1.2 Pre5
Proftpd Project Proftpd 1.2 Pre6
Proftpd Project Proftpd 1.2 Pre7
Proftpd Project Proftpd 1.2.10
Proftpd Project Proftpd 1.2.2
Proftpd Project Proftpd 1.2.2 Rc1
NA
CVE-2005-2390
Multiple format string vulnerabilities in ProFTPD prior to 1.3.0rc2 allow malicious users to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut, or (2) the SQLShowInfo mod_sql directive.
Proftpd Project Proftpd 1.2.0 Rc1
Proftpd Project Proftpd 1.2.0 Rc2
Proftpd Project Proftpd 1.2.10 Rc3
Proftpd Project Proftpd 1.2.2
Proftpd Project Proftpd 1.2.0 Rc3
Proftpd Project Proftpd 1.2.1
Proftpd Project Proftpd 1.2.2 Rc2
Proftpd Project Proftpd 1.2.2 Rc3
Proftpd Project Proftpd 1.2.6
Proftpd Project Proftpd 1.2.6 Rc1
Proftpd Project Proftpd 1.2.8
Proftpd Project Proftpd 1.2.8 Rc1
Proftpd Project Proftpd 1.2.0 Pre10
Proftpd Project Proftpd 1.2.0 Pre9
Proftpd Project Proftpd 1.2.10 Rc1
Proftpd Project Proftpd 1.2.10 Rc2
Proftpd Project Proftpd 1.2.5
Proftpd Project Proftpd 1.2.5 Rc1
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.9 Rc1
Proftpd Project Proftpd 1.2.9 Rc2
NA
CVE-2004-0432
ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to bypass intended access restrictions.
Proftpd Project Proftpd 1.2.9
Gentoo Linux 1.1a
Gentoo Linux 1.2
Gentoo Linux 1.4
Trustix Secure Linux 2.0
Gentoo Linux 0.5
Gentoo Linux 0.7
Trustix Secure Linux 2.1
NA
CVE-2003-0831
ProFTPD 1.2.7 up to and including 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote malicious users to execute arbitrary code via a buffer overflow using certain files.
Proftpd Project Proftpd 1.2.7
Proftpd Project Proftpd 1.2.9 Rc2
Proftpd Project Proftpd 1.2.8 Rc2
Proftpd Project Proftpd 1.2.9 Rc1
Proftpd Project Proftpd 1.2.7 Rc1
Proftpd Project Proftpd 1.2.7 Rc2
Proftpd Project Proftpd 1.2.7 Rc3
Proftpd Project Proftpd 1.2.8
Proftpd Project Proftpd 1.2.8 Rc1
3 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »