← Vulnerability feed

Vulnerability record · CVE-2019-9649 · published 22 March 2019

CVE-2019-9649: Coreftp core ftp path traversal vulnerability

CCoreftp · Core Ftp

An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. Using the MDTM FTP command, a remote attacker can use a directory traversal technique (..\..\) to browse outside the root directory to determine the existence of a file on the operating system, and its last modified date.

5.3 CVSS 3.0 Medium EPSS 15% · top 3.5% CWE-22 · Path traversal
5.3CVSS 3.0 base score, v2 5.0
15%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
12References, 4 tagged exploit
17 Jun 2026Last modified by NVD

Description

An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. Using the MDTM FTP command, a remote attacker can use a directory traversal technique (..\..\) to browse outside the root directory to determine the existence of a file on the operating system, and its last modified date.

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-9649 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-19596Coreftp core ftp classic buffer overflow vulnerabilityBuffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username.EPSS 1.3%9.8CVE-2018-12113Coreftp core ftp memory buffer overflow vulnerabilityCore FTP LE version 2.2 Build 1921 is prone to a buffer overflow vulnerability that may result in a DoS or remote code execution via a PASV response.EPSS 6.9%9.3CVE-2013-3930Coreftp core ftp memory buffer overflow vulnerabilityStack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a C…EPSS 3.0%9.3CVE-2009-3484Coreftp core ftp memory buffer overflow vulnerabilityStack-based buffer overflow in Core FTP 2.1 build 1612 allows user-assisted remote attackers to execute arbitrary code via a long hostname in an FTP …EPSS 5.6%8.7CVE-2019-25686Coreftp core ftp missing authentication for critical function vulnerabilityCore FTP 2.0 build 653 contains a denial of service vulnerability in the PBSZ command that allows unauthenticated attackers to crash the service by s…EPSS 0.47%8.7CVE-2019-25654Coreftp core ftp out-of-bounds write vulnerabilityCore FTP/SFTP Server 1.2 contains a buffer overflow vulnerability that allows attackers to crash the service by supplying an excessively long string …EPSS 0.69%7.8CVE-2014-1215Coreftp core ftp memory buffer overflow vulnerabilityMultiple buffer overflows in Core FTP Server before 1.2 build 508 allow local users to gain privileges via vectors related to reading data from confi…EPSS 0.36%7.5CVE-2020-19595Coreftp core ftp classic buffer overflow vulnerabilityBuffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.EPSS 1.1%

Source: NIST National Vulnerability Database (record CVE-2019-9649), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.