Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be used and consequently allow attackers to have unspecified impact via unknown vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ProFTPD mod_tls模块安全漏洞
Vulnerability Description
ProFTPD是ProFTPD团队的一套开源的FTP服务器软件。该软件具有可配置性强、安全、稳定等特点。mod_tls是其中的一个用于支持FTP会话TLS/SSL加密模块。 ProFTPD 1.3.5b之前版本和1.3.6rc2之前1.3.6版本的mod_tls模块中存在安全漏洞,该漏洞源于程序没有正确处理TLSDHParamFile指令。攻击者可利用该漏洞导致程序使用弱Diffie-Hellman(DH)密钥。
CVSS Information
N/A
Vulnerability Type
N/A