Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ProFTPD SQL Injection mod_sql Vulnerability

ProFTPD has been reported prone to SQL injection attacks. Specifically, ProFTPD versions that use the mod_sql module to manipulate PostgreSQL databases are prone to SQL injection attacks. The vulnerability occurs due to insufficient sanitization of user-supplied data when logging onto the FTP server.

Successful exploitation may result in an attacker obtaining privileged access to the FTP server. Other attacks are also possible.







 

Privacy Statement
Copyright 2009, SecurityFocus