CVE-2023-53886
Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program' configuration that allows attackers to crash the application. Attackers can trigger the vulnerability by inserting 294 characters into the program execution configuration, causing a denial of service condition.
- Affected products
- Xlight Ftp Server
- Xlightftpd Xlight Ftp Server
- = 3.9.3.6
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 0.4% (31th percentile)
- Weakness
- CWE-787, CWE-121
- NVD status
- Analyzed
- Published
- 2025-12-15
CVE-2023-53886 at NVD
No indexed exploits for CVE-2023-53886 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2023-53886 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.