6.4
CVSSv2

CVE-2005-2390

Published: 27/07/2005 Updated: 18/10/2016
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

Multiple format string vulnerabilities in ProFTPD prior to 1.3.0rc2 allow malicious users to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut, or (2) the SQLShowInfo mod_sql directive.

Vulnerable Product Search on Vulmon Subscribe to Product

proftpd project proftpd 1.2.10 rc2

proftpd project proftpd 1.2.3

proftpd project proftpd 1.2.6 rc2

proftpd project proftpd 1.2.6 rc3

proftpd project proftpd 1.2.1

proftpd project proftpd 1.2.7 rc3

proftpd project proftpd 1.2.4

proftpd project proftpd 1.2.7 rc2

proftpd project proftpd 1.2.5 rc2

proftpd project proftpd 1.3.0 rc1

proftpd project proftpd 1.2.9

proftpd project proftpd 1.2.0 rc1

proftpd project proftpd 1.2.10 rc1

proftpd project proftpd 1.2.1 final

proftpd project proftpd 1.2.0 pre9

proftpd project proftpd 1.2.9 rc2

proftpd project proftpd 1.2.0 rc2

proftpd project proftpd 1.2.7

proftpd project proftpd 1.2.2 rc1

proftpd project proftpd 1.2.6

proftpd project proftpd 1.2.10 rc3

proftpd project proftpd 1.2.8 rc1

proftpd project proftpd 1.2.6 rc1

proftpd project proftpd 1.2.9 rc1

proftpd project proftpd 1.2.2 rc2

proftpd project proftpd 1.2.0 rc3

proftpd project proftpd 1.2.7 rc1

proftpd project proftpd 1.2.8

proftpd project proftpd 1.2.2 rc3

proftpd project proftpd 1.2.9 rc3

proftpd project proftpd 1.2.5 rc3

proftpd project proftpd 1.2.8 rc2

proftpd project proftpd 1.2.5

proftpd project proftpd 1.2.2

proftpd project proftpd 1.2.0 pre10

proftpd project proftpd 1.2.10

proftpd project proftpd 1.2.5 rc1

Vendor Advisories

infamous42md reported that proftpd suffers from two format string vulnerabilities In the first, a user with the ability to create a directory could trigger the format string error if there is a proftpd shutdown message configured to use the "%C", "%R", or "%U" variables In the second, the error is triggered if mod_sql is used to retrieve messages ...