build1 publisher
A published ProFTPD mod_sql exploit needs a login and a privileged PostgreSQL role
Exploit-DB's entry for CVE-2026-42167 carries a CVSS of 8.1, and the proof of concept it publishes only fires after authentication, against a PostgreSQL backend whose database role can already run code. Triage starts in the ProFTPD config.
Publishers:dev.to
Reality
- Evidence45
- Adoption20
- Hype gap−15
- Incentives35
- Confidence40