CVE-2001-0456

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/06/2001
Last modified:
10/10/2017

Description

postinst installation script for Proftpd in Debian 2.2 does not properly change the "run as uid/gid root" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than intended.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*