Back to search
CVE-2010-3867
Published: Nov 9, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple directory traversal vulnerabilities in the mod_site_misc module in ProFTPD before 1.3.3c allow remote authenticated users to create directories, delete directories, create symlinks, and modify file timestamps via directory traversal sequences in a (1) SITE MKDIR, (2) SITE RMDIR, (3) SITE SYMLINK, or (4) SITE UTIME command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.proftpd.org/docs/NEWS-1.3.3c
x_refsource_CONFIRM
42047
third-party-advisory
x_refsource_SECUNIA
DSA-2191
vendor-advisory
x_refsource_DEBIAN
FEDORA-2010-17091
vendor-advisory
x_refsource_FEDORA
http://bugs.proftpd.org/show_bug.cgi?id=3519
x_refsource_CONFIRM
42217
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-17098
vendor-advisory
x_refsource_FEDORA
FEDORA-2010-17220
vendor-advisory
x_refsource_FEDORA
ADV-2010-2941
vdb-entry
x_refsource_VUPEN
SSA:2010-305-03
vendor-advisory
x_refsource_SLACKWARE
[oss-security] 20101101 Re: Proftpd pre-authentication buffer overflow in Telnet code
mailing-list
x_refsource_MLIST
ADV-2010-2853
vdb-entry
x_refsource_VUPEN
ADV-2010-2962
vdb-entry
x_refsource_VUPEN
42052
third-party-advisory
x_refsource_SECUNIA
MDVSA-2010:227
vendor-advisory
x_refsource_MANDRIVA
44562
vdb-entry
x_refsource_BID
ADV-2010-2959
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now