Multiple vulnerabilities in ProFTPD (CVSS Base Score 8.8) allow a remote authenticated attacker to execute arbitrary code and disclose sensitive information. The affected versions are ProFTPD open source versions prior to 1.3.9c and prior to 1.3.10rc3. A mitigation is available, but the article does not specify a fixed version or detailed workaround.
[WID-SEC-2026-2424] ProFTPD: Mehrere Schwachstellen CVSS Base Score 8.8 (hoch) CVSS Temporal Score 7.7 (hoch) Remoteangriff ja Datum 20.07.2026 Stand 21.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung ProFTPD ist ein Open Source FTP-Server. Produkte 20.07.2026 Open Source ProFTPD <1.3.9c Open Source ProFTPD <1.3.10rc3 Angriff Angriff Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in ProFTPD ausnutzen, um beliebigen Programmcode auszufĂĽhren und vertrauliche Informationen offenzulegen. CVE Informationen Versionshistorie Feedback zum Advisory geben