VYPR
Unrated severityNVD Advisory· Published Nov 9, 2010· Updated Apr 29, 2026

CVE-2010-4221

CVE-2010-4221

Description

Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow remote attackers to execute arbitrary code via vectors involving a TELNET IAC escape character to a (1) FTP or (2) FTPS server.

Affected products

15
  • Proftpd/Proftpd15 versions
    cpe:2.3:a:proftpd:proftpd:1.3.2:*:*:*:*:*:*:*+ 14 more
    • cpe:2.3:a:proftpd:proftpd:1.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:a:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:b:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:c:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:d:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:e:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:rc3:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.2:rc4:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:*:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:a:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:b:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:rc1:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:rc2:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:rc3:*:*:*:*:*:*
    • cpe:2.3:a:proftpd:proftpd:1.3.3:rc4:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

13

News mentions

0

No linked articles in our index yet.