← Back

CVE-2004-0432

nvd nist
Published: Aug 18, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to bypass intended access restrictions.

Affected (11)

Proftpd
1 product
Linux
1 product
Secure Linux
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.2.9
Configuration B
10 vulnerable
Vulnerable SoftwareAffected Versions
Gentoo
Version 0.5
Version 0.7
Version 1.1a
Version 1.2
Version 1.4
Version 1.4 rc1
Version 1.4 rc2
Version 1.4 rc3
Trustix
Version 2.0
Version 2.1

References (14)

Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.