vulns.coMCP

← CVE intelligence

CVE-2015-3306 - ProFTPD Improper Access Control Vulnerability

ProFTPD contains an improper access control vulnerability that could allow remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.

Severity
critical
Product
ProFTPD ProFTPD
Published
2026-10-08
EPSS
0.968
CISA KEV
Known exploited
Ransomware
Known campaign use

References and validation

Entries are refreshed from CISA KEV and FIRST EPSS. Validate applicability before testing.