← Back

CVE-2009-0543

nvd nist
Published: Feb 12, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

ProFTPD Server 1.3.1, with NLS support enabled, allows remote attackers to bypass SQL injection protection mechanisms via invalid, encoded multibyte characters, which are not properly handled in (1) mod_sql_mysql and (2) mod_sql_postgres.

Affected (1)

Products: Proftpd: Proftpd
1 product
Proftpd
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.3.1

References (14)

Timeline

No history available yet.