Known Vulnerabilities for Vsftpd by Vsftpd Project
Listed below are 5 of the newest known vulnerabilities associated with "Vsftpd" by "Vsftpd Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-19893 json | A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the file /etc/vsftpd.conf of t... | Not Provided | 2026-08-15 | 2026-08-18 |
| CVE-2026-19841 json | A flaw has been found in TRENDNET TEW-813DRU 1.01b01. Impacted is an unknown function of the file /etc/vsftpd.conf of the com... | Not Provided | 2026-08-14 | 2026-08-14 |
| CVE-2025-44657 json | In Linksys EA6350 V2.1.2, the chroot_local_user option is enabled in the dynamically generated vsftpd configuration file. Thi... | Not Provided | 2025-07-21 | 2026-07-05 |
| CVE-2025-44655 json | In TOTOLink A7100RU V7.4, A950RG V5.9, and T10 V5.9, the chroot_local_user option is enabled in the vsftpd.conf. This could l... | Not Provided | 2025-07-21 | 2026-07-05 |
| CVE-2025-44654 json | In Linksys E2500 3.0.04.002, the chroot_local_user option is enabled in the vsftpd configuration file. This could lead to una... | Not Provided | 2025-07-21 | 2026-07-05 |
| CVE-2025-14242 json | A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command par... | Not Provided | 2026-01-14 | 2026-06-29 |
| CVE-2021-30047 json | VSFTPD 3.0.3 allows attackers to cause a denial of service due to limited number of connections allowed. | 7.5 - HIGH | 2023-08-22 | 2023-08-25 |
| CVE-2021-3618 json | ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but... | 7.4 - HIGH | 2022-03-23 | 2023-02-09 |
| CVE-2015-1419 json | Not Provided | 2015-01-28 | 2026-05-06 | |
| CVE-2011-2523 json | vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp. | 9.8 - CRITICAL | 2019-11-27 | 2021-04-12 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Vsftpd Project | Vsftpd | 3.0.3 | |||
| Application | Vsftpd Project | Vsftpd | 3.0.2 | |||
| Application | Vsftpd Project | Vsftpd | 3.0.1 | |||
| Application | Vsftpd Project | Vsftpd | 3.0.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.5 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.4 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.3 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.2 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.1 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.3.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.2 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.2 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.1 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.0 | |||
| Application | Vsftpd Project | Vsftpd | 2.2.0 |