CVE-2011-2523

critical

Description

vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.

References

https://github.com/samirchapagain/metasploit-lab-report

https://github.com/vaishnavi0307/Automated-Vulnerability-Assessment-Security-Reporting-Platform

https://github.com/OsamaAlsaedi/nmap-cve-scanner

https://github.com/aboubacar70/LAB1-metasploitable

https://github.com/Ismael-Ifetayo/Security-Reports

https://github.com/Nourah-ALobaeid/SSC-Ministry-Audit-DesertShadeV3

https://github.com/michaeloloye7/vuln-scanner

https://github.com/Mahhyya/Nmap-Network-Reconnaissance

https://github.com/rsakthikumar-cmd/metasploitable2-vsftpd-writeup

https://github.com/Harshit2519/Network-VAPT-Metasploitable2

https://github.com/aish19siddiqua-commits/mtechweek_04

https://github.com/Stacyy-Were/CVE-2011-2523

https://github.com/mukidulislamzihad/m2-vulnerability-assessment

https://github.com/maheensawera/network-vuln-scanner-py

https://github.com/sonalisarkar-2003/FTP-vsFTPD-CVE-2011-2523-VAPT-Report

https://github.com/alexojocyber/cve-2011-2523-vsftpd-validation-lab

https://github.com/gopika-13-S/Zero-to-Root

https://github.com/james-gasp/home-lab-vulnerability-scanner

https://github.com/IrsaAttiqueCyber/SystemVulnerabilityChecklist_Project4_Decodelabs

https://github.com/MrEchoFi/docklab

https://github.com/khalilu020/offensive-security-adversary-emulation

https://github.com/sanasimran1403-jpg/pentest-report-generator

https://github.com/AyeshaKhan-Enigma/vulnerability-exploitation-initial-access

https://github.com/venkatesh4059/ApexPlanet-TASK---2-CyberSecurity-Network-Security-Scanning

https://github.com/VictorGlass/DockerLabs-Tproot

https://github.com/JahzeelReyes30/penetration-test-lab

https://github.com/asibechehSav/legacy-systems-security-assessment

https://github.com/sudichai/cve-destroyer

https://github.com/priyanshudubey454-hue/metasploitable2-vulnerability-assessment

https://github.com/animeshthube/nessus-vulnerability-assessment

https://github.com/collinsnwammuo/Threat-Intelligence---CVE-Research

https://github.com/IndiQuarks/vsftpd-cve-2011-2523-lab

https://github.com/solomonhenry-afk/vsftpd-cve-2011-2523-detection-signature

https://github.com/Orevic21/wazuh-home-soc

https://github.com/PT-CODING/Netrecon

https://github.com/pritishhhh/network-vulnerability-nmap

https://github.com/kn9annihilator/CVE-2011-2523-vsFTPd-2.3.4-Writeup

https://github.com/RootVandal/Netrecon

https://github.com/omkarsawant1337/Smartscan

https://github.com/Geniusom18/metasploitable2-dvwa-pentest

https://github.com/EthicalHackingLabs/metasploitable2-exploitation-metasploit

https://github.com/NovocaineX/pentest-metasploit

https://github.com/armaanamin/cybersecurity-portfolio

https://github.com/kamatmansi/OpenVAS

https://github.com/kamatmansi/Advanced-Web-Vulnerability-Scanner-OpenVAS

https://github.com/kunalkushwaha-tech/Network-Reconnaissance-and-Vulnerability-Assessment

https://github.com/Marc-OSCG/nuclei-API

https://github.com/olawale-sec/network-vulnerability-assessment

https://github.com/Guppss/VulnScan-Pro

https://github.com/Kartik0219/vuln-scanner

https://github.com/BlackShadow-arch/Web_Vulnerability_Assessment

https://github.com/kmrlbhr/pwntilldawn-10.150.150.12

https://github.com/arsalan-khan-dev/VulnScan-Pro

https://github.com/H4R335HR/vsftpd-234-backdoor

https://github.com/nitinsukthe/OpenVAS-Vulnerability-Assessment-Incident-Response

https://github.com/nitinsukthe/OpenVAS-Vulnerability-Assessment---Incident-Response

https://github.com/SallyAboud/Vulnerability-Scanner

https://github.com/Silence-Cy/ModuScan

https://github.com/Ateebshaikh21/red-team-ai

https://github.com/dinesh3690/Vulnerability-Assessment-Lab

https://github.com/krish-achanta/vuln-validator

https://github.com/Chathura123git/ethical-hacking-CVE-2011-2523

https://github.com/murahari1/recon-tool

https://github.com/Jhatchi/NexaCorp-DFIR-INC-2026-001

https://github.com/JefferyCyber/Vulnerability-Scanner

https://github.com/uliyach45/penetration-testing-lab09

https://github.com/Taisa456/network-security-snort

https://github.com/Ernest-Kosmatko/Netrecon

https://github.com/LMunizCiber/pentest-reports

https://github.com/Prafullya-Shandilya/metasploitable-pentest-report

https://github.com/baranii2105/nmap-recon-project

https://github.com/DiegoRodriguez-GL/bigschool-ciberseguridad

https://github.com/Amirmuhammadmarvi/network-security-lab

https://github.com/1Kyryll/Hacking-Metaspoitable2

https://github.com/fai2an/nexacorp-vapt

https://github.com/IvoAlbacete/Kali-Metasploitable

https://github.com/Mithileshan/soc-investigation-lab

https://github.com/okoroe845-create/network-security-audit-metasploitable2

https://github.com/Retr0wq/network-scanner

https://github.com/Ritesh-GG/Vulnerability-Assessment-Lab

https://github.com/anjaniparikh0715/openvas-vulnerability-assessment-

https://github.com/emilebarnard242/pentest-metasploitable2

https://github.com/Alam686/openvas-vulnerability-assessment

https://github.com/Nyabayo/flatiron-pentest-nmap-enum4linux-smb-ftp-samba-metasploitable2-kali-healthcare-report

https://github.com/RinAliyeva/metasploitable2-vsftpd-exploitation

https://github.com/Dahalsamir/CVE-2011-2523-exploit

https://github.com/marez8505/VulnScout

https://github.com/uliyach45/penetration-testing-labs

https://github.com/AbdulMoiz6692/cve-vulnerability-scanner-pro

https://github.com/Lovedipsingh/Wireshark-Network-Analysis-Lab

https://github.com/Tr00jan99/PwnTillDawn-Portal-Walkthrough

https://github.com/brettsm/vsftpd2.3.4-backdoor-exploit

https://github.com/RehmanAjaz/CVE-Scanner

https://github.com/abhi12103606/ThreatVision-SOC

https://github.com/SuprithKr/Vulnerability-Assessment

https://github.com/javiercabrera05/pentest-lab

https://github.com/Deloney-code/AI-Powered-Red-Team-Automation

https://github.com/yagnikkrish/metasploitable-penetration-testing-lab

https://github.com/Ehab-Ayman-Anwar/Advanced-Network-Security-Assessment-project

https://github.com/digital-playground/ezsploit

https://github.com/Mahembajr/cyberscan

https://github.com/Efehamzaa/Metasploit-Red-Pentest-Lab

https://github.com/Mirza-22144/Vulnerability-Assessment-Exploitation-Lab

https://github.com/KlyneZyro/Metasploitable2-VAPT-Report

https://github.com/avivyap/CVE-2011-2523

https://github.com/Tariqshinwar/vuln-assessment-of-network

https://github.com/ManoJ9082/Vulnerability-Assessment-using-Tenable-Nessus

https://github.com/agufran006/Metasploitable2-VAPT

https://github.com/hajisthabegum/Exploiting-vsFTPd-2.3.4-Backdoor-Vulnerability-Ethical-Hacking-Lab-with-Metasploitable-2-Metasploit

https://github.com/seerat-fatima21/vsftpd-exploit

https://github.com/BolivarJ/CVE-2011-2523

https://github.com/As9xm/BrokenDoor-CVE-2011-2523-

https://github.com/RedTeamShanks/Local-Network-Vulnerability-Assessment

https://github.com/DaddyBigFish/vulme

https://github.com/masterkillah2009/Port-Scanner

https://github.com/krill-x7/CVE-2011-2523

https://github.com/lghost256/vsftpd234-exploit

https://github.com/jagruth97/Python-vulnerability-detection-toolkit

https://github.com/Prakanth20/Network-Scanner-with-Banner-Grabbing-and-CVE-Detection

https://github.com/aparnaa19/CVE-Exploits-on-Metasploitable2

https://github.com/JohanMV/explotacion-vsftpd-nmap_Laboratorio_1

https://github.com/vedpakhare/vsftpd-234-vuln-report

https://github.com/Lychi3/vsftpd-backdoor

https://github.com/GoulongWang/CVE-Writeup

https://github.com/everythingBlackkk/vsFTPd-Backdoor-Exploit-CVE-2011-2523-

https://github.com/Gill-Singh-A/vsFTP-2.3.4-Remote-Root-Shell-Exploit

https://github.com/AnugiArrawwala/CVE-Research

https://github.com/Tenor-Z/SmileySploit

https://github.com/4m3rr0r/CVE-2011-2523-poc

https://github.com/chleba124/vsftpd-exploit

https://github.com/EchoSl0w/CVE

https://github.com/cowsecurity/CVE-2011-2523

https://github.com/0xFTW/CVE-2011-2523

https://github.com/0xSojalSec/CVE-2011-2523

https://github.com/0xSojalSec/-CVE-2011-2523

https://github.com/MFernstrom/OffensivePascal-CVE-2011-2523

https://github.com/Prestaa/vsftpd-2.3.4

https://github.com/PrestaDZ/vsftpd-2.3.4

https://github.com/whoamins/vsFTPd-2.3.4-exploit

https://github.com/davidlares/vsftpd-exploitation

https://github.com/HerculesRD/vsftpd2.3.4PyExploit

http://packetstormsecurity.com/files/162145/vsftpd-2.3.4-Backdoor-Command-Execution.html

Details

Source: Mitre, NVD

Published: 2019-11-27

Updated: 2021-04-12

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.96184