Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code via an FTP transfer with a crafted filename that causes format string specifiers to be inserted into the ProFTPD transfer log.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gproftpd | Gproftpd | * | 8.1.8 (including) |