10.0
HIGH CVSS 2.0
CVE-2011-2523
Vsftpd Backdoor Shell Access
Description

vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.

INFO

Published Date :

Nov. 27, 2019, 9:15 p.m.

Last Modified :

Nov. 21, 2024, 1:28 a.m.

Remotely Exploit :

Yes !
Affected Products

The following products are affected by CVE-2011-2523 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Debian debian_linux
1 Vsftpd_project vsftpd
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 2.0 HIGH [email protected]
CVSS 3.1 CRITICAL [email protected]
Public PoC/Exploit Available at Github

CVE-2011-2523 has a 774 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2011-2523 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Internal penetration test of a Metasploitable2 Linux server (ethical hacking capstone).

Updated: 18 hours, 58 minutes ago
0 stars 0 fork 0 watcher
Born at : June 13, 2026, 4:24 a.m. This repo has been linked 4 different CVEs too.

A full internal penetration test of Metasploitable2 covering information gathering, password auditing, vulnerability assessment, and social engineering simulation. Conducted using Kali Linux, Nmap, John the Ripper, Metasploit, and the Social-Engineer Toolkit (SET) as part of the ParoCyber Ethical Hacking Capstone Project.

Updated: 1 day, 2 hours ago
0 stars 0 fork 0 watcher
Born at : June 12, 2026, 8:27 p.m. This repo has been linked 1 different CVEs too.

A Python-based network vulnerability scanner that automates host discovery, port scanning, service enumeration, and vulnerability assessment using Nmap. Designed to streamline network reconnaissance and security analysis in lab environments.

Python HTML

Updated: 1 day, 8 hours ago
0 stars 0 fork 0 watcher
Born at : June 12, 2026, 2:57 p.m. This repo has been linked 2 different CVEs too.

Hands-on network security lab portfolio — reconnaissance, Metasploit exploitation, and SQL injection testing using Kali Linux, Nmap, and DVWA in isolated VMware environments.

Updated: 1 day, 19 hours ago
1 stars 0 fork 0 watcher
Born at : June 12, 2026, 3:47 a.m. This repo has been linked 3 different CVEs too.

None

Updated: 1 day, 6 hours ago
0 stars 0 fork 0 watcher
Born at : June 11, 2026, 8:08 p.m. This repo has been linked 2 different CVEs too.

None

Updated: 2 days, 16 hours ago
0 stars 0 fork 0 watcher
Born at : June 11, 2026, 12:48 a.m. This repo has been linked 2 different CVEs too.

None

Updated: 2 days, 2 hours ago
0 stars 0 fork 0 watcher
Born at : June 11, 2026, 12:41 a.m. This repo has been linked 2 different CVEs too.

Penetration testing lab — vulnerability analysis on Metasploitable 2 using Nmap, Wireshark and Metasploit

cve-2011-2523 cybersecurity ethical-hacking kali-linux metasploit nmap penetration-testing wireshark

Updated: 3 days, 3 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 7:17 p.m. This repo has been linked 1 different CVEs too.

Enterprise network penetration testing and hardening - exploitation of vsftpd backdoor, PHP CGI injection, and DNS amplification with full remediation.

Updated: 1 day, 4 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 12:58 p.m. This repo has been linked 2 different CVEs too.

Full network/system penetration test of Metasploitable 2 — recon → root compromise (Samba RCE, ingreslock, MySQL/PostgreSQL default creds) → post-exploitation, with reports, per-finding write-ups, ATT&CK mapping, and blue-team Sigma detection rules.

detection-engineering ethical-hacking metasploit metasploitable2 mitre-attack network-security penetration-testing privilege-escalation sigma-rules vapt

Updated: 3 days, 11 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 11:32 a.m. This repo has been linked 2 different CVEs too.

A structured 12-week red team engagement documenting every phase of a real-world attack — reconnaissance, exploitation, privilege escalation, lateral movement, Active Directory domination, post-engagement cleanup, and executive-level reporting with CVSS scoring and MITRE ATT&CK framework mapping.

Updated: 3 days, 15 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 7:49 a.m. This repo has been linked 3 different CVEs too.

None

Updated: 3 days, 17 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 6:11 a.m. This repo has been linked 1 different CVEs too.

Nmap vulnerability assessment of Metasploitable2 Linux lab. Mapped exploits to MITRE ATT&CK T1190, T1059.004, T1021.001 with CVE analysis and SOC remediation steps.

Updated: 3 days, 22 hours ago
0 stars 0 fork 0 watcher
Born at : June 10, 2026, 12:40 a.m. This repo has been linked 1 different CVEs too.

Penetration test against Metasploitable 2 vsFTPd backdoor exploitation, root Meterpreter session, manual hash extraction and password cracking with John the Ripper.

Updated: 4 days, 2 hours ago
0 stars 0 fork 0 watcher
Born at : June 9, 2026, 8:52 p.m. This repo has been linked 1 different CVEs too.

None

Updated: 4 days, 1 hour ago
0 stars 0 fork 0 watcher
Born at : June 9, 2026, 8:16 p.m. This repo has been linked 1 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2011-2523 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2011-2523 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Modified by af854a3a-2127-422b-91ae-364da2661108

    Nov. 21, 2024

    Action Type Old Value New Value
    Added Reference http://packetstormsecurity.com/files/162145/vsftpd-2.3.4-Backdoor-Command-Execution.html
    Added Reference https://access.redhat.com/security/cve/cve-2011-2523
    Added Reference https://packetstormsecurity.com/files/102745/VSFTPD-2.3.4-Backdoor-Command-Execution.html
    Added Reference https://security-tracker.debian.org/tracker/CVE-2011-2523
    Added Reference https://vigilance.fr/vulnerability/vsftpd-backdoor-in-version-2-3-4-10805
    Added Reference https://www.openwall.com/lists/oss-security/2011/07/11/5
  • CVE Modified by [email protected]

    May. 14, 2024

    Action Type Old Value New Value
  • CVE Modified by [email protected]

    Apr. 12, 2021

    Action Type Old Value New Value
    Added Reference http://packetstormsecurity.com/files/162145/vsftpd-2.3.4-Backdoor-Command-Execution.html [No Types Assigned]
  • CPE Deprecation Remap by [email protected]

    Aug. 18, 2020

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:o:debian:debian_linux:10:*:*:*:*:*:*:* OR *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
  • Initial Analysis by [email protected]

    Dec. 16, 2019

    Action Type Old Value New Value
    Added CVSS V2 NIST (AV:N/AC:L/Au:N/C:C/I:C/A:C)
    Added CVSS V3.1 NIST AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Changed Reference Type https://access.redhat.com/security/cve/cve-2011-2523 No Types Assigned https://access.redhat.com/security/cve/cve-2011-2523 Third Party Advisory
    Changed Reference Type https://packetstormsecurity.com/files/102745/VSFTPD-2.3.4-Backdoor-Command-Execution.html No Types Assigned https://packetstormsecurity.com/files/102745/VSFTPD-2.3.4-Backdoor-Command-Execution.html Exploit, Third Party Advisory, VDB Entry
    Changed Reference Type https://security-tracker.debian.org/tracker/CVE-2011-2523 No Types Assigned https://security-tracker.debian.org/tracker/CVE-2011-2523 Third Party Advisory
    Changed Reference Type https://vigilance.fr/vulnerability/vsftpd-backdoor-in-version-2-3-4-10805 No Types Assigned https://vigilance.fr/vulnerability/vsftpd-backdoor-in-version-2-3-4-10805 Third Party Advisory
    Changed Reference Type https://www.openwall.com/lists/oss-security/2011/07/11/5 No Types Assigned https://www.openwall.com/lists/oss-security/2011/07/11/5 Mailing List, Third Party Advisory
    Added CWE NIST CWE-78
    Added CPE Configuration OR *cpe:2.3:a:vsftpd_project:vsftpd:2.3.4:*:*:*:*:*:*:*
    Added CPE Configuration OR *cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* *cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* *cpe:2.3:o:debian:debian_linux:10:*:*:*:*:*:*:*
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.