{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"critical"},"category":"csaf_vex","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"SUSE CVE-2010-20103","title":"Title"},{"category":"description","text":"A malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed between November 28 and December 2, 2010. The backdoor implements a hidden FTP command trigger that, when invoked, causes the server to execute arbitrary shell commands with root privileges. This allows remote, unauthenticated attackers to run any OS command on the FTP server host.","title":"Description of the CVE"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"CVE-2010-20103","url":"https://www.suse.com/security/cve/CVE-2010-20103"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1248414 for CVE-2010-20103","url":"https://bugzilla.suse.com/1248414"}],"title":"SUSE CVE CVE-2010-20103","tracking":{"current_release_date":"2025-08-20T23:44:25Z","generator":{"date":"2025-08-20T23:44:25Z","engine":{"name":"cve-database.git:bin/generate-csaf-vex.pl","version":"1"}},"id":"CVE-2010-20103","initial_release_date":"2025-08-20T23:44:25Z","revision_history":[{"date":"2025-08-20T23:44:25Z","number":"2","summary":"Current version"}],"status":"interim","version":"2"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP6","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP7","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Server Applications 15 SP6","product":{"name":"SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-server-applications:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Server Applications 15 SP7","product":{"name":"SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-server-applications:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP6","product":{"name":"SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP7","product":{"name":"SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp7"}}},{"category":"product_name","name":"openSUSE Leap 15.6","product":{"name":"openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6","product_identification_helper":{"cpe":"cpe:/o:opensuse:leap:15.6"}}},{"category":"product_version","name":"proftpd","product":{"name":"proftpd","product_id":"proftpd","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-devel","product":{"name":"proftpd-devel","product_id":"proftpd-devel","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-devel@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-doc","product":{"name":"proftpd-doc","product_id":"proftpd-doc","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-doc@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-lang","product":{"name":"proftpd-lang","product_id":"proftpd-lang","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-lang@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-ldap","product":{"name":"proftpd-ldap","product_id":"proftpd-ldap","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-ldap@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-mysql","product":{"name":"proftpd-mysql","product_id":"proftpd-mysql","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-mysql@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-pgsql","product":{"name":"proftpd-pgsql","product_id":"proftpd-pgsql","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-pgsql@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-radius","product":{"name":"proftpd-radius","product_id":"proftpd-radius","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-radius@?upstream=proftpd.src.rpm"}}},{"category":"product_version","name":"proftpd-sqlite","product":{"name":"proftpd-sqlite","product_id":"proftpd-sqlite","product_identification_helper":{"cpe":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/proftpd-sqlite@?upstream=proftpd.src.rpm"}}}],"category":"product_family","name":"SUSE Linux Enterprise"}],"category":"vendor","name":"SUSE"}],"relationships":[{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Module for Server Applications 15 SP6","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of SUSE Linux Enterprise Module for Server Applications 15 SP7","product_id":"SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"SUSE Linux Enterprise Module for Server Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"proftpd as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd"},"product_reference":"proftpd","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-devel as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-devel"},"product_reference":"proftpd-devel","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-doc as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-doc"},"product_reference":"proftpd-doc","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-lang as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-lang"},"product_reference":"proftpd-lang","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-ldap as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-ldap"},"product_reference":"proftpd-ldap","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-mysql as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-mysql"},"product_reference":"proftpd-mysql","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-pgsql as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-pgsql"},"product_reference":"proftpd-pgsql","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-radius as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-radius"},"product_reference":"proftpd-radius","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"proftpd-sqlite as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:proftpd-sqlite"},"product_reference":"proftpd-sqlite","relates_to_product_reference":"openSUSE Leap 15.6"}]},"vulnerabilities":[{"cve":"CVE-2010-20103","ids":[{"system_name":"SUSE CVE Page","text":"https://www.suse.com/security/cve/CVE-2010-20103"}],"notes":[{"category":"general","text":"A malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed between November 28 and December 2, 2010. The backdoor implements a hidden FTP command trigger that, when invoked, causes the server to execute arbitrary shell commands with root privileges. This allows remote, unauthenticated attackers to run any OS command on the FTP server host.","title":"CVE description"}],"product_status":{"known_not_affected":["SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-devel","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-doc","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-lang","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-ldap","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-mysql","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-pgsql","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-radius","SUSE Linux Enterprise High Performance Computing 15 SP6:proftpd-sqlite","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-devel","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-doc","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-lang","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-ldap","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-mysql","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-pgsql","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-radius","SUSE Linux Enterprise High Performance Computing 15 SP7:proftpd-sqlite","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-devel","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-doc","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-lang","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-ldap","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-mysql","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-pgsql","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-radius","SUSE Linux Enterprise Module for Server Applications 15 SP6:proftpd-sqlite","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-devel","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-doc","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-lang","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-ldap","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-mysql","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-pgsql","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-radius","SUSE Linux Enterprise Module for Server Applications 15 SP7:proftpd-sqlite","SUSE Linux Enterprise Server 15 SP6:proftpd","SUSE Linux Enterprise Server 15 SP6:proftpd-devel","SUSE Linux Enterprise Server 15 SP6:proftpd-doc","SUSE Linux Enterprise Server 15 SP6:proftpd-lang","SUSE Linux Enterprise Server 15 SP6:proftpd-ldap","SUSE Linux Enterprise Server 15 SP6:proftpd-mysql","SUSE Linux Enterprise Server 15 SP6:proftpd-pgsql","SUSE Linux Enterprise Server 15 SP6:proftpd-radius","SUSE Linux Enterprise Server 15 SP6:proftpd-sqlite","SUSE Linux Enterprise Server 15 SP7:proftpd","SUSE Linux Enterprise Server 15 SP7:proftpd-devel","SUSE Linux Enterprise Server 15 SP7:proftpd-doc","SUSE Linux Enterprise Server 15 SP7:proftpd-lang","SUSE Linux Enterprise Server 15 SP7:proftpd-ldap","SUSE Linux Enterprise Server 15 SP7:proftpd-mysql","SUSE Linux Enterprise Server 15 SP7:proftpd-pgsql","SUSE Linux Enterprise Server 15 SP7:proftpd-radius","SUSE Linux Enterprise Server 15 SP7:proftpd-sqlite","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-devel","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-doc","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-lang","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-ldap","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-mysql","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-pgsql","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-radius","SUSE Linux Enterprise Server for SAP Applications 15 SP6:proftpd-sqlite","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-devel","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-doc","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-lang","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-ldap","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-mysql","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-pgsql","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-radius","SUSE Linux Enterprise Server for SAP Applications 15 SP7:proftpd-sqlite","openSUSE Leap 15.6:proftpd","openSUSE Leap 15.6:proftpd-devel","openSUSE Leap 15.6:proftpd-doc","openSUSE Leap 15.6:proftpd-lang","openSUSE Leap 15.6:proftpd-ldap","openSUSE Leap 15.6:proftpd-mysql","openSUSE Leap 15.6:proftpd-pgsql","openSUSE Leap 15.6:proftpd-radius","openSUSE Leap 15.6:proftpd-sqlite"]},"references":[{"category":"external","summary":"CVE-2010-20103","url":"https://www.suse.com/security/cve/CVE-2010-20103"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1248414 for CVE-2010-20103","url":"https://bugzilla.suse.com/1248414"}],"threats":[{"category":"impact","date":"2025-08-20T18:04:05Z","details":"critical"}],"title":"CVE-2010-20103"}]}