Описание
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| proftpd-dfsg | fixed | 1.3.5-2 | package | |
| proftpd-dfsg | not-affected | squeeze | package |
Примечания
https://www.openwall.com/lists/oss-security/2015/04/15/2
https://github.com/proftpd/proftpd/pull/109
http://bugs.proftpd.org/show_bug.cgi?id=4169
https://cxsecurity.com/issue/WLB-2015040075
EPSS
Связанные уязвимости
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
Уязвимость FTP-сервера ProFTPD, позволяющая удалённому нарушителю получить доступ к защищаемой информации
EPSS