6.4

CVE-2005-2390

Multiple format string vulnerabilities in ProFTPD before 1.3.0rc2 allow attackers to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut, or (2) the SQLShowInfo mod_sql directive.

Data is provided by the National Vulnerability Database (NVD)
Proftpd ProjectProftpd Version1.2.0_pre9
Proftpd ProjectProftpd Version1.2.0_pre10
Proftpd ProjectProftpd Version1.2.0_rc1
Proftpd ProjectProftpd Version1.2.0_rc2
Proftpd ProjectProftpd Version1.2.0_rc3
Proftpd ProjectProftpd Version1.2.1
Proftpd ProjectProftpd Version1.2.1_final
Proftpd ProjectProftpd Version1.2.2
Proftpd ProjectProftpd Version1.2.2_rc1
Proftpd ProjectProftpd Version1.2.2_rc2
Proftpd ProjectProftpd Version1.2.2_rc3
Proftpd ProjectProftpd Version1.2.3
Proftpd ProjectProftpd Version1.2.4
Proftpd ProjectProftpd Version1.2.5
Proftpd ProjectProftpd Version1.2.5_rc1
Proftpd ProjectProftpd Version1.2.5_rc2
Proftpd ProjectProftpd Version1.2.5_rc3
Proftpd ProjectProftpd Version1.2.6
Proftpd ProjectProftpd Version1.2.6_rc1
Proftpd ProjectProftpd Version1.2.6_rc2
Proftpd ProjectProftpd Version1.2.6_rc3
Proftpd ProjectProftpd Version1.2.7
Proftpd ProjectProftpd Version1.2.7_rc1
Proftpd ProjectProftpd Version1.2.7_rc2
Proftpd ProjectProftpd Version1.2.7_rc3
Proftpd ProjectProftpd Version1.2.8
Proftpd ProjectProftpd Version1.2.8_rc1
Proftpd ProjectProftpd Version1.2.8_rc2
Proftpd ProjectProftpd Version1.2.9
Proftpd ProjectProftpd Version1.2.9_rc1
Proftpd ProjectProftpd Version1.2.9_rc2
Proftpd ProjectProftpd Version1.2.9_rc3
Proftpd ProjectProftpd Version1.2.10
Proftpd ProjectProftpd Version1.2.10_rc1
Proftpd ProjectProftpd Version1.2.10_rc2
Proftpd ProjectProftpd Version1.2.10_rc3
Proftpd ProjectProftpd Version1.3.0_rc1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.24% 0.773
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:N/A:P