7.5
CVE-2001-1500
- EPSS 1.09%
- Published 31.12.2001 05:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward resolution, which allows remote attackers to bypass ACLs or cause an incorrect client hostname to be logged.
Data is provided by the National Vulnerability Database (NVD)
Proftpd Project ≫ Proftpd Version1.2
Proftpd Project ≫ Proftpd Version1.2.0_rc3
Proftpd Project ≫ Proftpd Version1.2.1
Proftpd Project ≫ Proftpd Version1.2.2
Proftpd Project ≫ Proftpd Version1.2.2_rc1
Proftpd Project ≫ Proftpd Version1.2.2_rc2
Proftpd Project ≫ Proftpd Version1.2_pre1
Proftpd Project ≫ Proftpd Version1.2_pre2
Proftpd Project ≫ Proftpd Version1.2_pre3
Proftpd Project ≫ Proftpd Version1.2_pre4
Proftpd Project ≫ Proftpd Version1.2_pre5
Proftpd Project ≫ Proftpd Version1.2_pre6
Proftpd Project ≫ Proftpd Version1.2_pre7
Proftpd Project ≫ Proftpd Version1.2_pre8
Proftpd Project ≫ Proftpd Version1.2_pre9
Proftpd Project ≫ Proftpd Version1.2_pre10
Proftpd Project ≫ Proftpd Version1.2_pre11
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.09% | 0.759 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|