Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2009-0542EPSS 77%
SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) ch…
Proftpd
No fix yet
MEDIUM 6.8
CVE-2008-4242EPSS 7%
ProFTPD 1.3.1 interprets long commands from an FTP client as multiple commands, which allows remote attackers to conduct cross-site request forgery (…
Proftpd
No fix yet
MEDIUM 5.1
CVE-2007-2165EPSS 12%
The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not require that the module that chec…
Proftpd
after 1.3.0_rc1
MEDIUM 6.6
CVE-2006-6563
Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1.3.1rc1 allows local users to…
Proftpd
Patch available
HIGH 7.5
CVE-2006-6170EPSS 17%
Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and earlier, and possibly other products, allo…
Proftpd
after 1.3.0a
HIGH 7.5
CVE-2006-6171EPSS 10%
ProFTPD 1.3.0a and earlier does not properly set the buffer size limit when CommandBufferSize is specified in the configuration file, which leads to …
Proftpd
after 1.3.0a
HIGH 10.0
CVE-2006-5815EPSS 74%
Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlier allows remote attackers, probably authenticated, to cause a denial …
Proftpd
after 1.3.0
HIGH 7.5
CVE-2005-4816EPSS 13%
Buffer overflow in mod_radius in ProFTPD before 1.3.0rc2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary …
Proftpd
Patch available
MEDIUM 6.4
CVE-2005-2390EPSS 9%
Multiple format string vulnerabilities in ProFTPD before 1.3.0rc2 allow attackers to cause a denial of service or obtain sensitive information via (1…
Proftpd
Mitigation only
HIGH 9.0
CVE-2003-0831EPSS 58%
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to…
Proftpd
No fix yet
HIGH 10.0
CVE-2003-0500EPSS 18%
SQL injection vulnerability in the PostgreSQL authentication module (mod_sql_postgres) for ProFTPD before 1.2.9rc1 allows remote attackers to execute…
Proftpd
Patch available
HIGH 7.5
CVE-2001-1500EPSS 12%
ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward resolution, which allows rem…
Proftpd
Patch available
MEDIUM 5.0
CVE-2001-1501EPSS 38%
The glob functionality in ProFTPD 1.2.1, and possibly other versions allows remote attackers to cause a denial of service (CPU and memory consumption…
Proftpd
Mitigation only
HIGH 7.5
CVE-2001-0318EPSS 11%
Format string vulnerability in ProFTPD 1.2.0rc2 may allow attackers to execute arbitrary commands by shutting down the FTP server while using a malfo…
Proftpd
Patch available
HIGH 7.5
CVE-2001-0027EPSS 6%
mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attac…
Proftpd
No fix yet
HIGH 10.0
CVE-1999-0911EPSS 38%
Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested…
Proftpd
Mitigation only