logo

How to find Monsta FTP installations on your network

ID: 8dcae4fe-0d87-5ee6-b456-d1dc4679ad10

STIX ID: report--8dcae4fe-0d87-5ee6-b456-d1dc4679ad10

Feed Name: runZero Blog

Threat Score
85/100

Date Published: 2025-11-10

Date Updated: 2026-04-29

Author: Matthew Kienow

...
...

**Executive summary:** The report details a critical unrestricted file upload vulnerability (CVE-2025-34299) in Monsta FTP (versions prior to 2.11.3) that permits unauthenticated remote code execution (CVSS 9.3); users are advised to upgrade to Monsta FTP 2.11.3 or later and the report includes a runZero query to locate potentially vulnerable hosts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.