6.4
CVSSv2

CVE-2005-2390

Published: 27/07/2005 Updated: 18/10/2016
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

Multiple format string vulnerabilities in ProFTPD prior to 1.3.0rc2 allow malicious users to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut, or (2) the SQLShowInfo mod_sql directive.

Vulnerable Product Search on Vulmon Subscribe to Product

proftpd project proftpd 1.2.0_rc1

proftpd project proftpd 1.2.0_rc2

proftpd project proftpd 1.2.10_rc3

proftpd project proftpd 1.2.2

proftpd project proftpd 1.2.0_rc3

proftpd project proftpd 1.2.1

proftpd project proftpd 1.2.2_rc2

proftpd project proftpd 1.2.2_rc3

proftpd project proftpd 1.2.6

proftpd project proftpd 1.2.6_rc1

proftpd project proftpd 1.2.8

proftpd project proftpd 1.2.8_rc1

proftpd project proftpd 1.2.0_pre10

proftpd project proftpd 1.2.0_pre9

proftpd project proftpd 1.2.10_rc1

proftpd project proftpd 1.2.10_rc2

proftpd project proftpd 1.2.5

proftpd project proftpd 1.2.5_rc1

proftpd project proftpd 1.2.7

proftpd project proftpd 1.2.7_rc1

proftpd project proftpd 1.2.9_rc1

proftpd project proftpd 1.2.9_rc2

proftpd project proftpd 1.2.9_rc3

proftpd project proftpd 1.2.1_final

proftpd project proftpd 1.2.10

proftpd project proftpd 1.2.3

proftpd project proftpd 1.2.4

proftpd project proftpd 1.2.6_rc2

proftpd project proftpd 1.2.6_rc3

proftpd project proftpd 1.2.8_rc2

proftpd project proftpd 1.2.9

proftpd project proftpd 1.2.2_rc1

proftpd project proftpd 1.2.5_rc2

proftpd project proftpd 1.2.5_rc3

proftpd project proftpd 1.2.7_rc2

proftpd project proftpd 1.2.7_rc3

proftpd project proftpd 1.3.0_rc1

Vendor Advisories

infamous42md reported that proftpd suffers from two format string vulnerabilities In the first, a user with the ability to create a directory could trigger the format string error if there is a proftpd shutdown message configured to use the "%C", "%R", or "%U" variables In the second, the error is triggered if mod_sql is used to retrieve messages ...