Proftpd

Vendor:

First CVE: Feb 9, 1999 · Active for 27 years

53
Total CVEs
More Total CVEs than 94% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 60% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Proftpd over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 9, 1999
27 years ago
Most Recent CVE
Jul 20, 2026
7 days ago

CVE Severity & Scoring

Proftpd53 CVEs
All CVEs352,785 CVEs
LowMediumHighCritical
Attack Vector
Local2 (3.8%)
Network19 (35.8%)
Unknown32 (60.4%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low17 (32.1%)
High4 (7.5%)
Unknown32 (60.4%)
User Interaction
None21 (39.6%)
Unknown32 (60.4%)
Required0 (0.0%)
Privileges Required
Low7 (13.2%)
High1 (1.9%)
None13 (24.5%)
Unknown32 (60.4%)

Top CVEs

Signals from CVEs in this product scope (53 CVEs).

53 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
May 18, 201510.093NOYES
Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow remote attackers to execute arbitrary code via vectors involvin
Nov 9, 201010.090NOYES
Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlier allows remote attackers, probably authenticated, to cause a denial of service and execute arbitrar
Nov 8, 200610.082NOYES
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packet
Dec 18, 20235.981NOYES
SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which
Feb 12, 20097.571NOYES
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a b
Nov 17, 20039.066NOYES
An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-
Jul 19, 20199.863NONO
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
Feb 9, 199910.060NOYES
Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.
Aug 27, 199910.056NOYES
mod_sql in ProFTPD before 1.3.9a allows remote attackers to execute arbitrary code via a username, in scenarios where there is logging of USER requests with an expansion such as %U
Apr 28, 20268.154NOYES

Exploit Exposure

Signals from CVEs in this product scope (53 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
4 CVEs
7.5% of CVEs· 96th percentile
Nuclei
7 CVEs
13.2% of CVEs· Bottom 1%
ExploitDB
14 CVEs
26.4% of CVEs· 91st percentile

Social Chatter

Signals from CVEs in this product scope (53 CVEs).

Media Mentions

Signals from CVEs in this product scope (53 CVEs).

Top CNAs Publishing CVEs For Proftpd

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
1.3.728.215.8%01
1.3.656.26.4%01
1.3.527.549.9%01
1.3.422.11.3%00
1.3.386.623.2%04
1.3.2_rc217.577.4%01
1.3.296.328.5%04
1.3.1018.10.4%00
1.3.1105.917.0%04
1.3.0_rc127.011.1%00
1.3.0a16.62.3%01
1.3.075.79.4%03
1.2_pre927.512.7%00
1.2_pre827.512.7%00
1.2_pre727.512.7%00
1.2_pre627.512.7%00
1.2_pre538.321.1%01
1.2_pre438.321.1%01
1.2_pre338.321.1%01
1.2_pre238.321.1%01