Описание
mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.0082
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.
EPSS
Процентиль: 74%
0.0082
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other