CVE
- Id
- 1455
- CVE No.
- CVE-1999-1475
- Status
- Candidate
- Description
- ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command.
- Phase
- Proposed (20010912)
- Votes
- MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall
- Comments
- Frech> XF:proftpd-modsqlpw-insecure-passwords(8332)