Vulnerability Details CVE-2001-1500
ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward resolution, which allows remote attackers to bypass ACLs or cause an incorrect client hostname to be logged.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 76.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2001-1500
-
cpe:2.3:a:proftpd_project:proftpd:1.2
-
cpe:2.3:a:proftpd_project:proftpd:1.2.0_rc3
-
cpe:2.3:a:proftpd_project:proftpd:1.2.1
-
cpe:2.3:a:proftpd_project:proftpd:1.2.2
-
cpe:2.3:a:proftpd_project:proftpd:1.2.2_rc1
-
cpe:2.3:a:proftpd_project:proftpd:1.2.2_rc2
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre1
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre10
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre11
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre2
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre3
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre4
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre5
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre6
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre7
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre8
-
cpe:2.3:a:proftpd_project:proftpd:1.2_pre9