PatchSiren

Xlightftpd CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Xlightftpd CVE published 2026-04-05

CVE-2019-25681

The CVE record for CVE-2019-25681 was published on 2026-04-05T21:16:46.457Z and has not been modified since then. The NVD entry is currently Analyzed. This structured exception handler (SEH) overwrite vulnerability in Xlight FTP Server 3.9.1 allows local attackers to crash the application and overwrite SEH pointers by supplying a crafted buffer string. The vulnerability can be triggered by injecting a 428 [truncated]