PT-2025-30294 · Vsftpd+1 · Vsftpd+1

Tpcchecker

·

Published

2025-07-21

·

Updated

2025-07-21

·

CVE-2025-44657

CVSS v3.1

3.9

Low

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Linksys EA6350 version 2.1.2
Description The chroot local user option is enabled in the dynamically generated vsftpd configuration file. This could lead to unauthorized access to system files, privilege escalation, or use of the compromised server as a pivot point for internal network attacks.
Recommendations Disable the chroot local user option in the vsftpd configuration file.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-44657

Affected Products

Linksys Re6350
Vsftpd