|
|
| |
| The Apache mod_proxy_ftp module is prone to a remote command-injection vulnerability because it fails to adequately sanitize user-supplied input data. |
| |
Credit:
The original article can be found at: http://www.securityfocus.com/bid/36254
The information has been provided by Intevydis.
|
| |
Vulnerable Systems:
* Apache Software Foundation mod_proxy_ftp 0 and prior
Attackers can exploit this issue to execute arbitrary commands within the context of the affected application.
Vendor Status:
Apache Software Foundation as issued an update for this vulnerablity.
Patch Availability:
http://httpd.apache.org/download.cgi
CVE Information:
CVE-2009-3095
Disclosure Timeline:
Published: Sep 03 2009
Updated: Apr 03 2012
|
|
blog comments powered by
|