Exploited Vulnerabilities Daily
🌐 繁體中文

CVE-2015-3306: ProFTPD ProFTPD

CISA (English)

ProFTPD contains an improper access control vulnerability that could allow remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.

廠商
ProFTPD
產品
ProFTPD
漏洞
ProFTPD Improper Access Control Vulnerability
加入日期
2026年10月8日
CISA 修補期限(美國聯邦機關)
2026年10月11日
已知用於勒索軟體攻擊
未知
弱點(CWE)
CWE-284

參考資料

本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。

最後更新: · 目錄版本 2026.10.08

關於本頁

ProFTPD包含一個不適當的訪問控制漏洞,可以讓遠端攻擊者透過站點cpfr和站點cpto命令讀寫任意檔案。