vendor:
ProFTPD
by:
detach
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: ProFTPD
Affected Version From: 1.2.2004
Affected Version To: 1.2.7rc3
Patch Exists: YES
Related CWE: N/A
CPE: a:proftpd:proftpd
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Slackware 8.1
2002
ProFTPD Denial of Service Vulnerability
A denial of service vulnerability has been reported for ProFTPD. It is possible to cause ProFTPD from responding to legitimate requests for service by issuing specially crafted STAT commands. This will result in a denial of service condition.
Mitigation:
Upgrade to ProFTPD version 1.2.7rc4 or later.