Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code via an FTP transfer with a crafted filename that causes format string specifiers to be inserted into the ProFTPD transfer log.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Gproftpd | Gproftpd | * | 8.1.8 (including) |