CVE-2006-6563

ProFTPD <1.3.1rc1 - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1.3.1rc1 allows local users to execute arbitrary code via a large reqarglen length value.

Exploits (4)

exploitdb WORKING POC VERIFIED
by pi3 · clocallinux
https://www.exploit-db.com/exploits/394
exploitdb WORKING POC VERIFIED
by Revenge · perllocallinux
https://www.exploit-db.com/exploits/3330
exploitdb WORKING POC VERIFIED
by Revenge · perllocallinux
https://www.exploit-db.com/exploits/3333
exploitdb WORKING POC VERIFIED
by Core Security · pythondoslinux
https://www.exploit-db.com/exploits/2928

Scores

EPSS 0.0025
EPSS Percentile 47.7%

Classification

Status draft

Affected Products (2)

proftpd_project/proftpd
proftpd_project/proftpd

Timeline

Published Dec 15, 2006
Tracked Since Feb 18, 2026