CVE-2015-3306
ProFTPD Improper Access Control Vulnerability - [Actively Exploited]
Description
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
INFO
Published Date :
May 18, 2015, 3:59 p.m.
Last Modified :
Oct. 9, 2026, 4:17 p.m.
Remotely Exploit :
Yes !
Source :
[email protected]
CISA KEV (Known Exploited Vulnerabilities)
For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild.
ProFTPD contains an improper access control vulnerability that could allow remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
Unknown
This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: http://www.proftpd.org/ ; https://lists.debian.org/debian-security-announce/2015/msg00154.html ; https://lists.opensuse.org/archives/list/[email protected]/message/WE6YZRG5UVXMGQ7IVDRYBPIWV4M6UUGM/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2015-3306
Affected Products
The following products are affected by CVE-2015-3306
vulnerability.
Even if cvefeed.io is aware of the exact versions of the
products
that
are
affected, the information is not represented in the table below.
CVSS Scores
| Score | Version | Severity | Vector | Exploitability Score | Impact Score | Source |
|---|---|---|---|---|---|---|
| CVSS | 134c704f-9b21-4f2e-91b3-4a467353bcc0 | |||||
| CVSS 2.0 | HIGH | [email protected] | ||||
| CVSS 3.1 | CRITICAL | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
Solution
- Update the ProFTPD package.
- If necessary, upgrade to ProFTPD 1.3.5a / 1.3.6rc1 or later.
Public PoC/Exploit Available at Github
CVE-2015-3306 has a 123 public
PoC/Exploit available at Github.
Go to the Public Exploits tab to see the list.
References to Advisories, Solutions, and Tools
Here, you will find a curated list of external links that provide in-depth
information, practical solutions, and valuable tools related to
CVE-2015-3306.
CWE - Common Weakness Enumeration
While CVE identifies
specific instances of vulnerabilities, CWE categorizes the common flaws or
weaknesses that can lead to vulnerabilities. CVE-2015-3306 is
associated with the following CWEs:
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Attack Pattern Enumeration and Classification
(CAPEC)
stores attack patterns, which are descriptions of the common attributes and
approaches employed by adversaries to exploit the CVE-2015-3306
weaknesses.
We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).
None
This repository contains the report and materials for a ProFTPD exploitation and MySQL data exfiltration demo, developed as part of the examination for the Cybersecurity Course at the University of Trieste.
Metasploitable3 모의침투 실습 보고서 | Microsoft Cyber Security School 6기
Security research portfolio — encryption, penetration testing, malware analysis, IDS, web security, and password cracking
cybersecurity encryption network-security openssl python security snort yara
Python
None
CSS HTML JavaScript
Python CLI for host discovery, port scanning, service fingerprinting & CVE triage. Zero mandatory dependencies. For authorised penetration testing only.
banner-grabbing cli cve host-discovery infosec json-report network-scanner nmap osint penetration-testing port-scanner python red-team security vulnerability-scanner
Python
None
🛡 Network reconnaissance & vulnerability scanner — pure Python, zero dependencies
Python
**The most complete open-source network security scanner built in pure Python.** Port Scanner · Vulnerability Assessment · SYN Stealth · Brute Force · Topology Map · Shodan · NVD · Docker
Dockerfile Python
Metasploitable3 ARM64 Docker Lab — educational CTF/security training environment
Dockerfile PHP Shell Python
Real-World Simulation: FTP Service Exploitation (ProFTPD CVE-2015-3306)
None
Dockerfile HTML CSS TypeScript JavaScript
A Python-based network scanner that performs SYN port scanning, banner grabbing, service detection, and basic CVE vulnerability identification using Scapy and socket programming.
Python
This is a walkthrough of enumerating and exploiting the metasploitbale3 virtual machine
AI-driven automated penetration testing pipeline comparing Claude Sonnet, GPT-4o and Gemini 2.0 Flash
artificial-intelligence cybersecurity flask llm metasploit nmap penetration-testing python
Python HTML
Results are limited to the first 15 repositories due to potential performance issues.
The following list is the news that have been mention
CVE-2015-3306 vulnerability anywhere in the article.
-
The Hacker News
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked thr ... Read more
-
The Hacker News
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious institutions in Southeast Asia, the FBI and agenc ... Read more
The following table lists the changes that have been made to the
CVE-2015-3306 vulnerability over time.
Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.
-
CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0
Oct. 09, 2026
Action Type Old Value New Value Removed SSVC {'id': 'CVE-2015-3306', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-10-08T00:00:00+00:00'} Added SSVC {'id': 'CVE-2015-3306', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-10-09T03:55:32.860386Z'} -
Modified Analysis by [email protected]
Oct. 09, 2026
Action Type Old Value New Value Added CPE Configuration OR *cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:* *cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:* *cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:* Added CPE Configuration OR *cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* *cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:* *cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* Added CPE Configuration OR *cpe:2.3:o:opensuse:tumbleweed:-:*:*:*:*:*:*:* *cpe:2.3:o:suse:linux_enterprise_server:15:sp7:*:*:-:-:*:* *cpe:2.3:o:suse:linux_enterprise_server:15:sp7:*:*:-:sap:*:* Added Reference Type MITRE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type MITRE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type MITRE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type MITRE: http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Types: Mailing List, Third Party Advisory Added Reference Type MITRE: http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Types: Third Party Advisory, VDB Entry Added Reference Type MITRE: http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Types: Third Party Advisory, VDB Entry Added Reference Type MITRE: http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Types: Exploit, VDB Entry Added Reference Type MITRE: http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Types: Exploit, VDB Entry Added Reference Type MITRE: http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Types: Exploit, VDB Entry Added Reference Type CVE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type MITRE: http://www.debian.org/security/2015/dsa-3263 Types: Mailing List, Third Party Advisory Added Reference Type CVE: http://www.debian.org/security/2015/dsa-3263 Types: Mailing List, Third Party Advisory Added Reference Type MITRE: http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Types: Third Party Advisory Added Reference Type CVE: http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Types: Third Party Advisory Added Reference Type MITRE: http://www.securityfocus.com/bid/74238 Types: Third Party Advisory Added Reference Type CVE: http://www.securityfocus.com/bid/74238 Types: Third Party Advisory Added Reference Type CISA-ADP: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-3306 Types: US Government Resource Added Reference Type CVE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type CVE: http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Types: Broken Link, Mailing List, Third Party Advisory Added Reference Type CVE: http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Types: Mailing List, Third Party Advisory Added Reference Type CVE: http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Types: Third Party Advisory, VDB Entry Added Reference Type CVE: http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Types: Third Party Advisory, VDB Entry Added Reference Type CVE: http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Types: Exploit, VDB Entry Added Reference Type CVE: http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Types: Exploit, VDB Entry Added Reference Type CVE: http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Types: Exploit, VDB Entry -
CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0
Oct. 09, 2026
Action Type Old Value New Value Removed SSVC {'id': 'CVE-2015-3306', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'no'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-10-08T17:40:17.854858Z'} Added SSVC {'id': 'CVE-2015-3306', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-10-08T00:00:00+00:00'} -
CVE CISA KEV Update by 9119a7d8-5eab-497f-8521-727c672e3725
Oct. 08, 2026
Action Type Old Value New Value Added Date Added 2026-10-08 Added Due Date 2026-10-08 Added Required Action 2026-10-08 Added Vulnerability Name 2026-10-08 -
CVE Modified by [email protected]
Oct. 08, 2026
Action Type Old Value New Value Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Added Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Added Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Added Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Added Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Added Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://www.debian.org/security/2015/dsa-3263 Added Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Added Reference http://www.securityfocus.com/bid/74238 Added Reference https://www.exploit-db.com/exploits/36742/ Added Reference https://www.exploit-db.com/exploits/36803/ Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Removed Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Removed Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Removed Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Removed Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Removed Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Removed Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Removed Reference http://www.debian.org/security/2015/dsa-3263 Removed Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Removed Reference http://www.securityfocus.com/bid/74238 Removed Reference https://www.exploit-db.com/exploits/36742/ Removed Reference https://www.exploit-db.com/exploits/36803/ Removed Reference Type https://www.exploit-db.com/exploits/36742/ Types: Exploit Removed Reference Type https://www.exploit-db.com/exploits/36803/ Types: Exploit -
CVE Modified by af854a3a-2127-422b-91ae-364da2661108
Oct. 08, 2026
Action Type Old Value New Value Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Added Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Added Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Added Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Added Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Added Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://www.debian.org/security/2015/dsa-3263 Added Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Added Reference http://www.securityfocus.com/bid/74238 Added Reference https://www.exploit-db.com/exploits/36742/ Added Reference https://www.exploit-db.com/exploits/36803/ Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Removed Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Removed Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Removed Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Removed Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Removed Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Removed Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Removed Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Removed Reference http://www.debian.org/security/2015/dsa-3263 Removed Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Removed Reference http://www.securityfocus.com/bid/74238 Removed Reference https://www.exploit-db.com/exploits/36742/ Removed Reference https://www.exploit-db.com/exploits/36803/ Removed Reference Type https://www.exploit-db.com/exploits/36742/ Types: Exploit Removed Reference Type https://www.exploit-db.com/exploits/36803/ Types: Exploit -
CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0
Oct. 08, 2026
Action Type Old Value New Value Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H Added CWE CWE-284 Added Reference https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-3306 Added SSVC {'id': 'CVE-2015-3306', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'no'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-10-08T17:40:17.854858Z'} -
CVE Modified by [email protected]
Jun. 17, 2026
Action Type Old Value New Value Added Affected [{'vendor': 'n/a', 'product': 'n/a', 'versions': [{'status': 'affected', 'version': 'n/a'}]}] -
Status Change by [email protected]
May. 06, 2026
Action Type Old Value New Value -
CVE Modified by af854a3a-2127-422b-91ae-364da2661108
Nov. 21, 2024
Action Type Old Value New Value Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157053.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157054.html Added Reference http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157581.html Added Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html Added Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html Added Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html Added Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html Added Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html Added Reference http://www.debian.org/security/2015/dsa-3263 Added Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec Added Reference http://www.securityfocus.com/bid/74238 Added Reference https://www.exploit-db.com/exploits/36742/ Added Reference https://www.exploit-db.com/exploits/36803/ -
CVE Modified by [email protected]
May. 14, 2024
Action Type Old Value New Value -
CVE Modified by [email protected]
May. 26, 2021
Action Type Old Value New Value Added Reference http://packetstormsecurity.com/files/162777/ProFTPd-1.3.5-Remote-Command-Execution.html [No Types Assigned] -
CVE Modified by [email protected]
Jan. 03, 2017
Action Type Old Value New Value Added Reference http://www.debian.org/security/2015/dsa-3263 [No Types Assigned] -
CVE Modified by [email protected]
Dec. 31, 2016
Action Type Old Value New Value Added Reference http://lists.opensuse.org/opensuse-updates/2015-06/msg00020.html [No Types Assigned] -
CVE Modified by [email protected]
Dec. 22, 2016
Action Type Old Value New Value Added Reference http://www.rapid7.com/db/modules/exploit/unix/ftp/proftpd_modcopy_exec [No Types Assigned] -
CVE Modified by [email protected]
Dec. 03, 2016
Action Type Old Value New Value Added Reference http://packetstormsecurity.com/files/132218/ProFTPD-1.3.5-Mod_Copy-Command-Execution.html [No Types Assigned] Added Reference http://packetstormsecurity.com/files/131505/ProFTPd-1.3.5-File-Copy.html [No Types Assigned] Added Reference http://packetstormsecurity.com/files/131555/ProFTPd-1.3.5-Remote-Command-Execution.html [No Types Assigned] Added Reference http://packetstormsecurity.com/files/131567/ProFTPd-CPFR-CPTO-Proof-Of-Concept.html [No Types Assigned] -
CVE Modified by [email protected]
Jun. 04, 2015
Action Type Old Value New Value Added Reference http://www.securityfocus.com/bid/74238 -
Modified Analysis by [email protected]
May. 19, 2015
Action Type Old Value New Value Added CPE Configuration Configuration 1 OR *cpe:2.3:a:proftpd:proftpd:1.3.5:*:*:*:*:*:*:* Added CVSS V2 (AV:N/AC:L/Au:N/C:C/I:C/A:C) Changed Reference Type https://www.exploit-db.com/exploits/36803/ No Types Assigned https://www.exploit-db.com/exploits/36803/ Exploit Changed Reference Type https://www.exploit-db.com/exploits/36742/ No Types Assigned https://www.exploit-db.com/exploits/36742/ Exploit Added CWE CWE-284 -
Initial Analysis by [email protected]
May. 19, 2015
Action Type Old Value New Value