ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2001-09-12T04:00:00
Updated: 2024-08-01T17:18:07.455Z
Reserved: 2001-08-31T00:00:00
Link: CVE-1999-1475
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 1999-11-19T05:00:00.000
Modified: 2008-09-05T20:19:36.820
Link: CVE-1999-1475
Redhat
No data.