Required CVE Record Information
Description
ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command.
References 2 Total
- securityfocus.com: 19991119 ProFTPd - mod_sqlpw.c mailing-list
- securityfocus.com: 812 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- securityfocus.com: 19991119 ProFTPd - mod_sqlpw.c mailing-listx_transferred
- securityfocus.com: 812 vdb-entryx_transferred