A vulnerability classified as problematic was found in Xlight FTP Server up to 3.9.4. Impacted is the function GetTickCount. Executing a manipulation can lead to information disclosure.

This vulnerability is tracked as CVE-2026-67193. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.