Skip to content

// #proftpd

1 article

🌐 Network

ProFTPD CVE-2026-42167 — Authentication Bypass Leading to Remote Code Execution

A vulnerability in ProFTPD — one of the most widely deployed open-source FTP server implementations — allows a remote unauthenticated attacker to bypass authentication controls and achieve code execution on the server. CVE-2026-42167 affects ProFTPD versions prior to 1.3.9a. FTP servers are frequently forgotten in patch management programmes; administrators should verify ProFTPD version and apply the update.

#proftpd +7