Security Advisory

CVE-2001-0456

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-09-18 04:00:00
Last updated 2024-08-08 04:21:38
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

postinst installation script for Proftpd in Debian 2.2 does not properly change the "run as uid/gid root" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than intended.