Arcane Software's vulnerability profile centers on a niche FTP daemon product with a modest disclosure footprint. Treat this as a compact vendor profile; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Arcane Software over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-20115CRITICAL Arcane Software’s Vermillion FTP Daemon (vftpd) versions up to and including 1.31 contains a memory corruption vulnerability triggered by a malformed FTP PORT command. The flaw ari | Aug 21, 2025 | 9.3 | 44 | NO | YES |
CVE-1999-1058HIGH Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via several long CWD commands. | Nov 22, 1999 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Arcane Software.
Media articles that mention a CVE ID that affects a product developed by Arcane Software — matched by CVE ID, not by vendor name.