Oval Definition:oval:org.opensuse.security:def:20090542
Revision Date:2022-06-30Version:1
Title:CVE-2009-0542
Description:

SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which introduces a "'" (single quote) character during variable substitution by mod_sql.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2009-0542
SUSE CVE-2009-0542
Platform(s):openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • proftpd-1.3.5b-2.5 is installed
  • OR proftpd-devel-1.3.5b-2.5 is installed
  • OR proftpd-doc-1.3.5b-2.5 is installed
  • OR proftpd-lang-1.3.5b-2.5 is installed
  • OR proftpd-ldap-1.3.5b-2.5 is installed
  • OR proftpd-mysql-1.3.5b-2.5 is installed
  • OR proftpd-pgsql-1.3.5b-2.5 is installed
  • OR proftpd-radius-1.3.5b-2.5 is installed
  • OR proftpd-sqlite-1.3.5b-2.5 is installed
  • BACK