header-logo
Suggest Exploit
vendor:
ProFTPD
by:
Unknown
7.5
CVSS
HIGH
Local Overflow
119
CWE
Product Name: ProFTPD
Affected Version From: 1.3.2000
Affected Version To: 1.3.0a
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
2007

ProFTPD 1.3.0/1.3.0a (mod_ctrls) Local Overflow Exploit (exec-shield)

This exploit targets a vulnerability in ProFTPD version 1.3.0 and 1.3.0a. The vulnerability is present in the mod_ctrls module and can be exploited locally. By exploiting this vulnerability, an attacker can execute arbitrary code with elevated privileges. The exploit uses the exec-shield technique to bypass security measures.

Mitigation:

The recommended mitigation for this vulnerability is to update ProFTPD to a patched version.
Source

Exploit-DB raw data:

ProFTPD 1.3.0/1.3.0a (mod_ctrls) Local Overflow Exploit (exec-shield)

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/3730.tgz (04132007-pr0ftpd_modctrls.tgz)

# milw0rm.com [2007-04-13]