CVE-2015-3306

NUCLEI

ProFTPD 1.3.5 - RCE

Title source: llm

Description

The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.

Exploits (25)

exploitdb WORKING POC VERIFIED
by Shellbr3ak · pythonremotelinux
https://www.exploit-db.com/exploits/49908
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/37262
exploitdb WRITEUP VERIFIED
by anonymous · textremotelinux
https://www.exploit-db.com/exploits/36742
exploitdb WORKING POC
by R-73eN · pythonremotelinux
https://www.exploit-db.com/exploits/36803
nomisec WORKING POC 144 stars
by t0kx · poc
https://github.com/t0kx/exploit-CVE-2015-3306
nomisec WORKING POC 2 stars
by nootropics · poc
https://github.com/nootropics/propane
nomisec WORKING POC 1 stars
by cybersensei-EH · poc
https://github.com/cybersensei-EH/hackviser_labs_CVE-2015-3306
github WORKING POC 1 stars
by vadimgggg · pythonpoc
https://github.com/vadimgggg/CVE-PoC/tree/main/CVE-2015-3306
nomisec WORKING POC 1 stars
by jptr218 · poc
https://github.com/jptr218/proftpd_bypass
nomisec WORKING POC 1 stars
by 0xm4ud · poc
https://github.com/0xm4ud/ProFTPD_CVE-2015-3306
nomisec WORKING POC 1 stars
by cd6629 · poc
https://github.com/cd6629/CVE-2015-3306-Python-PoC
nomisec WORKING POC 1 stars
by davidtavarez · poc
https://github.com/davidtavarez/CVE-2015-3306
nomisec WORKING POC 1 stars
by xyk0x · poc
https://github.com/xyk0x/cpx_proftpd
nomisec WORKING POC 1 stars
by shk0x · poc
https://github.com/shk0x/cpx_proftpd
github WRITEUP
by Zahid-secure · poc
https://github.com/Zahid-secure/cve-walkthrough-labs/tree/main/2015/CVE-2015-3306-kenobi-tryhackme
nomisec WRITEUP
by canpilayda · poc
https://github.com/canpilayda/proftpd-mod_copy-cve-2015-3306
nomisec WORKING POC
by netw0rk7 · poc
https://github.com/netw0rk7/CVE-2015-3306-Home-Lab
nomisec WORKING POC
by donmedfor · poc
https://github.com/donmedfor/CVE-2015-3306
nomisec WORKING POC
by Z3R0space · poc
https://github.com/Z3R0space/CVE-2015-3306
nomisec WORKING POC
by Z3R0-0x30 · poc
https://github.com/Z3R0-0x30/CVE-2015-3306
nomisec WORKING POC
by JoseLRC97 · poc
https://github.com/JoseLRC97/ProFTPd-1.3.5-mod_copy-Remote-Command-Execution
nomisec STUB
by hackarada · poc
https://github.com/hackarada/cve-2015-3306
nomisec WORKING POC
by cved-sources · poc
https://github.com/cved-sources/cve-2015-3306
nomisec WORKING POC
by cdedmondson · poc
https://github.com/cdedmondson/Modified-CVE-2015-3306-Exploit
metasploit WORKING POC EXCELLENT
by Vadim Melihow · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/ftp/proftpd_modcopy_exec.rb

Nuclei Templates (1)

ProFTPd - Remote Code Execution
CRITICALby pdteam
Shodan: cpe:"cpe:2.3:a:proftpd:proftpd"

Scores

EPSS 0.9368
EPSS Percentile 99.8%

Details

CWE
CWE-284
Status published
Products (1)
proftpd/proftpd 1.3.5
Published May 18, 2015
Tracked Since Feb 18, 2026