Back
CVE-2005-0484
Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code via an FTP transfer with a crafted filename that causes format string specifiers to be inserted into the ProFTPD transfer log.
Published: Mar 30, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| gproftpd | gproftpd | * |
GitHub Security Advisory GHSA-xr7m-jcj6-p39r
Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to...
References (4)
- http://bugs.gentoo.org/show_bug.cgi?id=81894 Exploit, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200502-26.xml Vendor Advisory
- http://bugs.gentoo.org/show_bug.cgi?id=81894 Exploit, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200502-26.xml Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
10.85%
Top 5% most likely to be exploited
Threat Score
33.3 / 100
Data Sources
NVD
EPSS
GitHub