OS Command Injection in vsftpd and Debian Linux - CVE-2011-2523
Published: November 27, 2019 / Updated: January 15, 2024
Vulnerability identifier: #VU35024
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2011-2523
CWE-ID: CWE-78
Exploitation vector: Remote access
Exploit availability:
Public exploit is available
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
Affected software
vsftpd
Debian Linux
Debian Linux
How to mitigate CVE-2011-2523
Install update from vendor's website.
Links to Public Exploits and PoC-codes
- Exploit #9505 - EXPLOIT_CVE () (January 15, 2024)
- Exploit #9057 - CVE-2011-2523 (Python exploit for vsftpd 2.3.4 - Backdoor Command Execution) (May 9, 2023)
- Exploit #8856 - CVE-2011-2523 (Python exploit for CVE-2011-2523 (VSFTPD 2.3.4 Backdoor Command Execution)) (February 20, 2023)
- Exploit #8795 - CVE-2011-2523 (CVE-2011-2523 exploit) (February 6, 2023)
- Exploit #8527 - CVE-2011-2523 (Python exploit for vsftpd 2.3.4 - Backdoor Command Execution) (October 23, 2022)
- Exploit #8007 - -CVE-2011-2523 (Python exploit for CVE-2011-2523 (VSFTPD 2.3.4 Backdoor Command Execution)) (June 9, 2022)
- Exploit #7870 - vsftpd-2.3.4 (Simple python script to exploit VsFTPd 2.3.4 Backdoor Command Execution (CVE-2011-2523)) (May 19, 2022)
- Exploit #6664 - CVE-2011-2523 (https://www.exploit-db.com/exploits/49757) (August 31, 2021)
- Exploit #5611 - vsftpd 2.3.4 - Backdoor Command Execution (June 17, 2021)
- Exploit #5347 - vsftpd-exploitation (A rewritten exploit script (Metasploit) for the vsftpd service [CVE 2011-2523]) (May 9, 2021)
- Exploit #5338 - CVE-2011-2523 (vsftpd 2.3.4 Backdoor Exploit) (May 3, 2021)
- Exploit #5301 - vsftpd 2.3.4 Backdoor Command Execution (April 16, 2021)
- Exploit #5282 - vsftpd2.3.4PyExploit (An exploit to get root in vsftpd 2.3.4 (CVE-2011-2523) written in python) (April 12, 2021)
External References
- https://access.redhat.com/security/cve/cve-2011-2523
- https://packetstormsecurity.com/files/102745/VSFTPD-2.3.4-Backdoor-Command-Execution.html
- https://security-tracker.debian.org/tracker/CVE-2011-2523
- https://vigilance.fr/vulnerability/vsftpd-backdoor-in-version-2-3-4-10805
- https://www.openwall.com/lists/oss-security/2011/07/11/5