Описание
mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.0082
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.
EPSS
Процентиль: 73%
0.0082
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other