CVE-2010-4652
CVE-2010-4652 is a medium-severity vulnerability in Proftpd with a CVSS 2.0 base score of 6.8. Its EPSS exploit-prediction score of 11% places it in the 96th percentile, indicating an elevated likelihood of exploitation. The underlying weakness is classified as CWE-119.
Key facts
- Severity: Medium (CVSS 2.0 base score 6.8)
- EPSS exploit prediction: 11% (96th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-119
- Affected product: Proftpd
- Published:
- Last modified:
Description
Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD before 1.3.3d, when mod_sql is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted username containing substitution tags, which are not properly handled during construction of an SQL query.
Frequently asked questions
- What is CVE-2010-4652?
- Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD before 1.3.3d, when mod_sql is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted username containing substitution tags, which are not properly handled during construction of an SQL query.
- How severe is CVE-2010-4652?
- CVE-2010-4652 has a CVSS 2.0 base score of 6.8, rated medium severity.
- Is CVE-2010-4652 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 11% (96th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2010-4652?
- CVE-2010-4652 primarily affects Proftpd. In total, 64 product configurations (CPEs) are listed as vulnerable; see the affected-products list for the exact versions.
- How do I fix CVE-2010-4652?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2010-4652 published?
- CVE-2010-4652 was published on 2011-02-02 and last updated on 2026-06-16.
References
- http://bugs.proftpd.org/show_bug.cgi?id=3536
- http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053537.html
- http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053540.html
- http://phrack.org/issues.html?issue=67&id=7#article
- http://proftpd.org/docs/RELEASE_NOTES-1.3.3d
- http://www.debian.org/security/2011/dsa-2191
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:023
- http://www.securityfocus.com/bid/44933
- http://www.vupen.com/english/advisories/2011/0248
- http://www.vupen.com/english/advisories/2011/0331
- https://bugzilla.redhat.com/show_bug.cgi?id=670170
Affected products (64)
- cpe:2.3:a:proftpd:proftpd:*:c:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:pre10:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:pre9:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.0:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.2:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.2:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.2:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.5:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.5:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.5:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.5:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.6:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.6:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.6:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.7:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.7:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.7:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.8:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.8:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.8:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.9:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.9:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.9:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.9:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.10:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.10:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.10:rc2:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.2.10:rc3:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.3.0:a:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.3.0:rc1:*:*:*:*:*:*
- cpe:2.3:a:proftpd:proftpd:1.3.0:rc2:*:*:*:*:*:*
More vulnerabilities in Proftpd
- CVE-2015-3306 — Critical (CVSS 10.0): The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and…
- CVE-2010-4221 — Critical (CVSS 10.0): Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow…
- CVE-2010-20103 — Critical (CVSS 9.8): A malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed between November 28 and…
- CVE-2019-12815 — Critical (CVSS 9.8): An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and…
- CVE-2011-4130 — Critical (CVSS 9.0): Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute…
- CVE-2026-63090 — High (CVSS 8.8): ProFTPD before 1.3.9c and 1.3.10rc3 contains a heap-based buffer overflow vulnerability in the mod_sftp module that…
Other CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) vulnerabilities
- CVE-2026-77946 — Critical (CVSS 10.0): A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected by this vulnerability is the function…
- CVE-2026-76008 — Critical (CVSS 10.0): A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file…
- CVE-2026-75784 — Critical (CVSS 10.0): A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of…
- CVE-2026-74843 — Critical (CVSS 10.0): A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerability is the function…
- CVE-2026-16367 — Critical (CVSS 10.0): Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox…
- CVE-2026-2778 — Critical (CVSS 10.0): Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnerability was fixed in…
Threat intelligence
Threat-intel indicators referencing this CVE:
- 185.161.16.2 (ipv4-addr)