Known Vulnerabilities for Proftpd by Proftpd

Listed below are 10 of the newest known vulnerabilities associated with "Proftpd" by "Proftpd".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-48795 json 5.9 - MEDIUM 2023-12-18 2024-03-13
CVE-2021-46854 json mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters. 7.5 - HIGH 2022-11-23 2023-05-03
CVE-2020-9273 json In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-af... 8.8 - HIGH 2020-02-20 2023-11-07
CVE-2020-9272 json ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap via the cap_text.c cap_to_text function. 7.5 - HIGH 2020-02-20 2021-11-09
CVE-2019-19272 json An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initializ... 7.5 - HIGH 2019-11-26 2019-12-11
CVE-2019-19271 json An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. A wrong iteration variable, used when checking a client ce... 7.5 - HIGH 2019-11-26 2019-12-11
CVE-2019-19270 json An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. Failure to check for the appropriate field of a CRL entr... 7.5 - HIGH 2019-11-26 2023-11-07
CVE-2019-19269 json An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This pointer ... 4.9 - MEDIUM 2019-11-30 2023-11-07
CVE-2019-18217 json ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling o... 7.5 - HIGH 2019-10-21 2023-11-07
CVE-2019-12815 json An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information dis... 9.8 - CRITICAL 2019-07-19 2023-11-07

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationProftpdProftpd1.3.7
ApplicationProftpdProftpd1.3.7
ApplicationProftpdProftpd1.3.6c
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.6
ApplicationProftpdProftpd1.3.5e
ApplicationProftpdProftpd1.3.5d
ApplicationProftpdProftpd1.3.5c
ApplicationProftpdProftpd1.3.5b
ApplicationProftpdProftpd1.3.5a
ApplicationProftpdProftpd1.3.5
ApplicationProftpdProftpd1.3.5
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report