Argosoft
Argosoft FTP Server: vulnerabilidades y CVE
Argosoft FTP Server tiene 13 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2006-2170 | Media (6.4) | 5.3% | — | 4 may 2006 | Buffer overflow in ArgoSoft FTP Server 1.4.3.6 allows remote attackers to execute arbitrary code via Unicode in the RNTO command, as demonstrated by the Infigo FTPStress Fuzzer. |
| CVE-2005-0696 | Alta (7.5) | 4.7% | — | 8 mar 2005 | Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DELE command. NOTE: this issue was later reported to also affect 1.4.3.5. |
| CVE-2005-0520 | Alta (10) | 3.7% | — | 23 feb 2005 | ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE COPY command, a different vulnerability than CVE-2005-0519. |
| CVE-2005-0519 | Alta (10) | 3.8% | — | 18 feb 2005 | ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the… |
| CVE-2004-2675 | Media (6.8) | 3.3% | — | 31 dic 2004 | ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a long password parameter, which causes the database to be corrupted. |
| CVE-2004-2672 | Alta (7.5) | 1.4% | — | 31 dic 2004 | Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors. |
| CVE-2004-1429 | Alta (7.5) | 1.3% | — | 31 dic 2004 | ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote attackers to guess passwords via a brute force attack. |
| CVE-2004-2673 | Alta (9) | 4.8% | — | 31 dic 2004 | Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a SITE ZIP command with a long first or second… |
| CVE-2004-1428 | Media (5) | 2.8% | — | 31 dic 2004 | ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remote attackers to determine valid usernames. |
| CVE-2004-2674 | Media (6.8) | 1.7% | — | 31 dic 2004 | Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the SITE UNZIP argument. |
| CVE-2000-1194 | Alta (7.5) | 3.0% | — | 31 ago 2001 | Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands. |
| CVE-2001-1142 | Media (5) | 2.0% | — | 12 jul 2001 | ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges. |
| CVE-2001-1043 | Alta (7.5) | 3.3% | — | 1 jul 2001 | ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file. |