7.5
CVE-2005-0484
- EPSS 10.85%
- Veröffentlicht 30.03.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:11:13
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code via an FTP transfer with a crafted filename that causes format string specifiers to be inserted into the ProFTPD transfer log.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 10.85% | 0.953 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://bugs.gentoo.org/show_bug.cgi?id=81894
http://security.gentoo.org/glsa/glsa-200502-26.xml