CVE-2019-18217: ProFTPD
High severity, CVSS 7.5. EPSS: 20.3% chance of exploitation in the next 30 days.
ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long commands because main.c in a child process enters an infinite loop.
Affected products
- ProFTPD ProFTPD: up to and including 1.3.5; version 1.3.6 only; version 1.3.7 only
Published 2019-10-21. Last modified 2026-06-17.