• We value your experience with Plesk during 2025
    Plesk strives to perform even better in 2026. To help us improve further, please answer a few questions about your experience with Plesk Obsidian 2025.
    Please take this short survey:

    https://survey.webpros.com/

critical issue: Plesk 11.09-proftp Update to 1.3.5 or 1.3.4e possible?

GerdSchrewe

Regular Pleskian
Ubuntu 12.04, Plesk 11.09 mu63
proftp Version 1.3.4
Vadim Melihow reported a critical issue with proftpd installations that use the
mod_copy module's SITE CPFR/SITE CPTO commands; mod_copy allows these commands
to be used by *unauthenticated clients*:

How can i update proftp?
Will paralleles offer a fix?

Unauthenticated copying of files via SITE CPFR/CPTO allowed by mod_copy
Reported: 2015-04-07 16:35 UTC by TJ Saunders
Modified: 2015-04-15 17:53 UTC (History)
http://bugs.proftpd.org/show_bug.cgi?id=4169


Thanx a lot for help!
 
Back
Top