CVE-2025-34299
EUVD-2025-3824707.11.2025, 14:15
Monsta FTP versions 2.11 and earlier contain a vulnerability that allows unauthenticated arbitrary file uploads. This flaw enables attackers to execute arbitrary code by uploading a specially crafted file from a malicious (S)FTP server.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| monstaftp | monsta_ftp | 𝑥 ≤ 2.11 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration