PatchSiren

Coreftp CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Coreftp CVE published 2026-04-05

CVE-2019-25686

CVE-2019-25686 is a denial of service vulnerability in Core FTP 2.0 build 653. The vulnerability is triggered by a malformed PBSZ command with an oversized buffer, which allows unauthenticated attackers to crash the service. This vulnerability has a high CVSS score of 8.7 and is considered a high-severity issue. Users of Core FTP 2.0 build 653 should apply patches or mitigations to prevent denial of servi [truncated]