Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2693▼ 77 respecto a la semana anterior
Críticas / altas1446▲ 303 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.1) | 0.53% | — | Proftpd | 20/7/2026 | 30/7/2026 | ProFTPD before 1.3.9c and 1.3.10rc3 contains a signed integer overflow vulnerability in the mod_sftp module's SCP size-record parser that allows authenticated low-privilege attackers to bypass ASLR by sending a crafted file size value of UINT64_MAX, which results in a negative off_t value. Attackers can exploit the… | |
| Analizada | Alta (8.7) | 0.93% | — | Proftpd | 20/7/2026 | 30/7/2026 | ProFTPD before 1.3.9c and 1.3.10rc3 contains a heap-based buffer overflow vulnerability in the mod_sftp module that allows authenticated low-privilege attackers to achieve arbitrary code execution by sending crafted SFTP packet fragments exceeding the 16 KB reassembly buffer in the fxp.c component. Attackers can… | |
| Analizada | Alta (7.7) | 0.75% | — | Proftpd | 18/7/2026 | 30/7/2026 | ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() function accepts the attacker-supplied 32-bit big-endian SFTP packet length without a minimum sanity check. A value of 0 causes an unsigned subtraction elsewhere in the read path to underflow to… | |
| Analizada | Alta (8.6) | 0.51% | — | Proftpd | 24/6/2026 | 14/7/2026 | ProFTPD through 1.3.9b and 1.3.10rc2 contains an access control bypass vulnerability that allows authenticated FTP users to circumvent Directory ACL restrictions by prefixing paths with /proc/self/root in the RNFR command handler. Attackers can exploit the unresolved symlink components in dir_canonical_path() to cause… | |
| Pendiente de análisis | Alta (8.1) | 0.50% | — | ProftpdAI | 5/5/2026 | 24/7/2026 | In ProFTPD through 1.3.9a before 7666224, a SQL injection vulnerability in sqltab_fetch_clients_cb() in contrib/mod_wrap2_sql.c allows a remote attacker to inject arbitrary SQL commands via a crafted domain name that is accessed in a reverse DNS lookup. When "UseReverseDNS on" is enabled, the attacker-supplied… | |
| Analizada | Alta (8.1) | 7.3% | — | Proftpd | 28/4/2026 | 24/7/2026 | mod_sql in ProFTPD before 1.3.9a allows remote attackers to execute arbitrary code via a username, in scenarios where there is logging of USER requests with an expansion such as %U, and the SQL backend allows commands (e.g., COPY TO PROGRAM). | |
| Aplazada | Alta (8.7) | 0.61% | — | ProftpdAI | 21/1/2026 | 17/6/2026 | ProFTPD 1.3.7a contains a denial of service vulnerability that allows attackers to overwhelm the server by creating multiple simultaneous FTP connections. Attackers can repeatedly establish connections using threading to exhaust server connection limits and block legitimate user access. | |
| Analizada | Crítica (9.3) | 5.1% | — | Proftpd | 20/8/2025 | 15/7/2026 | A malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed between November 28 and December 2, 2010. The backdoor implements a hidden FTP command trigger that, when invoked, causes the server to execute arbitrary shell commands with root privileges. This allows remote, unauthenticated… | |
| Aplazada | Alta (7.5) | 1.2% | — | ProftpdAI | 6/2/2025 | 17/6/2026 | Buffer Overflow vulnerability in Proftpd commit 4017eff8 allows a remote attacker to execute arbitrary code and can cause a Denial of Service (DoS) on the FTP service by sending a maliciously crafted message to the ProFTPD service port. | |
| Aplazada | Alta (7.5) | 2.2% | — | ProftpdAIProftpd MOD SQLAI | 29/11/2024 | 17/6/2026 | In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql. | |
| Modificada | Alta (7.5) | 4.2% | — | Proftpd | 22/12/2023 | 17/6/2026 | make_ftp_cmd in main.c in ProFTPD before 1.3.8a has a one-byte out-of-bounds read, and daemon crash, because of mishandling of quote/backslash semantics. | |
| Modificada | Media (5.9) | 94% | — | Openbsd OpensshPuttyFilezilla-project Filezilla ClientPanic Transmit 5+64 | 18/12/2023 | 17/6/2026 | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some… | |
| Modificada | Alta (7.5) | 1.2% | — | Proftpd | 23/11/2022 | 17/6/2026 | mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters. | |
| Modificada | Alta (8.8) | 12% | — | ProftpdDebian LinuxFedoraproject FedoraOpensuse Backports SLE+3 | 20/2/2020 | 17/6/2026 | In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool in pool.c, and possible remote code execution. | |
| Modificada | Alta (7.5) | 2.1% | — | ProftpdSiemens Simatic NET CP 1543-1 FirmwareSiemens Simatic NET CP 1545-1 FirmwareOpensuse Backports SLE+1 | 20/2/2020 | 17/6/2026 | ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap via the cap_text.c cap_to_text function. | |
| Modificada | Media (4.9) | 1.6% | — | ProftpdFedoraproject FedoraDebian Linux | 30/11/2019 | 17/6/2026 | An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This pointer is returned by the OpenSSL sk_X509_REVOKED_value() function when encountering an empty CRL installed by a system administrator. The dereference occurs when validating the certificate of a client… | |
| Modificada | Alta (7.5) | 0.95% | — | Proftpd | 26/11/2019 | 17/6/2026 | An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initialized to NULL) leads to a crash when validating the certificate of a client connecting to the server in a TLS client/server mutual-authentication setup. | |
| Modificada | Alta (7.5) | 1.1% | — | Proftpd | 26/11/2019 | 17/6/2026 | An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. A wrong iteration variable, used when checking a client certificate against CRL entries (installed by a system administrator), can cause some CRL entries to be ignored, and can allow clients whose certificates have been revoked to proceed with a… | |
| Modificada | Alta (7.5) | 1.0% | — | ProftpdFedoraproject Fedora | 26/11/2019 | 17/6/2026 | An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. Failure to check for the appropriate field of a CRL entry (checking twice for subject, rather than once for subject and once for issuer) prevents some valid CRLs from being taken into account, and can allow clients whose certificates have been… | |
| Modificada | Alta (7.5) | 20% | — | Proftpd | 21/10/2019 | 17/6/2026 | ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long commands because main.c in a child process enters an infinite loop. | |
| Modificada | Crítica (9.8) | 58% | — | ProftpdFedoraproject FedoraDebian LinuxSiemens Simatic CP 1543-1 Firmware | 19/7/2019 | 17/6/2026 | An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-2015-3306. | |
| Modificada | Media (5.5) | 0.42% | — | Proftpd | 4/4/2017 | 17/6/2026 | ProFTPD before 1.3.5e and 1.3.6 before 1.3.6rc5 controls whether the home directory of a user could contain a symbolic link through the AllowChrootSymlinks configuration option, but checks only the last path component when enforcing AllowChrootSymlinks. Attackers with local access could bypass the AllowChrootSymlinks… | |
| Modificada | Alta (7.5) | 7.0% | — | ProftpdOpensuseFedoraproject Fedora | 5/4/2016 | 17/6/2026 | The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be used and consequently allow attackers to have unspecified impact via unknown vectors. | |
| Modificada | Alta (10) | 97% | — | Proftpd | 18/5/2015 | 17/6/2026 | The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands. | |
| Modificada | Media (5) | 3.0% | — | Proftpd | 30/9/2013 | 16/6/2026 | Integer overflow in kbdint.c in mod_sftp in ProFTPD 1.3.4d and 1.3.5r3 allows remote attackers to cause a denial of service (memory consumption) via a large response count value in an authentication request, which triggers a large memory allocation. |