Proftpd
Vendor:
First CVE: Feb 9, 1999 · Active for 27 years
53
Total CVEs
More Total CVEs than 94% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 60% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Proftpd over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 9, 1999
27 years ago
Most Recent CVE
Jul 20, 2026
7 days ago
CVE Severity & Scoring
Proftpd53 CVEs
34%
60%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (3.8%)
Network19 (35.8%)
Unknown32 (60.4%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low17 (32.1%)
High4 (7.5%)
Unknown32 (60.4%)
User Interaction
None21 (39.6%)
Unknown32 (60.4%)
Required0 (0.0%)
Privileges Required
Low7 (13.2%)
High1 (1.9%)
None13 (24.5%)
Unknown32 (60.4%)
Top CVEs
Signals from CVEs in this product scope (53 CVEs).
53 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-3306HIGH The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands. | May 18, 2015 | 10.0 | 93 | NO | YES |
CVE-2010-4221HIGH Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow remote attackers to execute arbitrary code via vectors involvin | Nov 9, 2010 | 10.0 | 90 | NO | YES |
CVE-2006-5815HIGH Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlier allows remote attackers, probably authenticated, to cause a denial of service and execute arbitrar | Nov 8, 2006 | 10.0 | 82 | NO | YES |
CVE-2023-48795MEDIUM The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packet | Dec 18, 2023 | 5.9 | 81 | NO | YES |
CVE-2009-0542HIGH SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which | Feb 12, 2009 | 7.5 | 71 | NO | YES |
CVE-2003-0831HIGH ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a b | Nov 17, 2003 | 9.0 | 66 | NO | YES |
CVE-2019-12815CRITICAL An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE- | Jul 19, 2019 | 9.8 | 63 | NO | NO |
CVE-1999-0368HIGH Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | Feb 9, 1999 | 10.0 | 60 | NO | YES |
CVE-1999-0911HIGH Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories. | Aug 27, 1999 | 10.0 | 56 | NO | YES |
CVE-2026-42167HIGH mod_sql in ProFTPD before 1.3.9a allows remote attackers to execute arbitrary code via a username, in scenarios where there is logging of USER requests with an expansion such as %U | Apr 28, 2026 | 8.1 | 54 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (53 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
4 CVEs
7.5% of CVEs· 96th percentile
Nuclei
7 CVEs
13.2% of CVEs· Bottom 1%
ExploitDB
14 CVEs
26.4% of CVEs· 91st percentile
Social Chatter
Signals from CVEs in this product scope (53 CVEs).
Media Mentions
Signals from CVEs in this product scope (53 CVEs).
Top CNAs Publishing CVEs For Proftpd
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.3.7 | 2 | 8.2 | 15.8% | 0 | 1 |
| 1.3.6 | 5 | 6.2 | 6.4% | 0 | 1 |
| 1.3.5 | 2 | 7.5 | 49.9% | 0 | 1 |
| 1.3.4 | 2 | 2.1 | 1.3% | 0 | 0 |
| 1.3.3 | 8 | 6.6 | 23.2% | 0 | 4 |
| 1.3.2_rc2 | 1 | 7.5 | 77.4% | 0 | 1 |
| 1.3.2 | 9 | 6.3 | 28.5% | 0 | 4 |
| 1.3.10 | 1 | 8.1 | 0.4% | 0 | 0 |
| 1.3.1 | 10 | 5.9 | 17.0% | 0 | 4 |
| 1.3.0_rc1 | 2 | 7.0 | 11.1% | 0 | 0 |
| 1.3.0a | 1 | 6.6 | 2.3% | 0 | 1 |
| 1.3.0 | 7 | 5.7 | 9.4% | 0 | 3 |
| 1.2_pre9 | 2 | 7.5 | 12.7% | 0 | 0 |
| 1.2_pre8 | 2 | 7.5 | 12.7% | 0 | 0 |
| 1.2_pre7 | 2 | 7.5 | 12.7% | 0 | 0 |
| 1.2_pre6 | 2 | 7.5 | 12.7% | 0 | 0 |
| 1.2_pre5 | 3 | 8.3 | 21.1% | 0 | 1 |
| 1.2_pre4 | 3 | 8.3 | 21.1% | 0 | 1 |
| 1.2_pre3 | 3 | 8.3 | 21.1% | 0 | 1 |
| 1.2_pre2 | 3 | 8.3 | 21.1% | 0 | 1 |