Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
478 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.5) | 3.5% | 💥 Exploit | Typsoft FTP Server | 29/11/2009 | 16/6/2026 | TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (crash) by sending an APPE (append) command immediately followed by a DELE (delete) command without sending file data in between these two commands. | |
| Modificada | Media (6.5) | 3.5% | 💥 Exploit | Home FTP Server Project Home FTP Server | 23/11/2009 | 16/6/2026 | Multiple directory traversal vulnerabilities in Home FTP Server 1.10.1.139 allow remote authenticated users to (1) create arbitrary directories via directory traversal sequences in an MKD command or (2) create files with any contents in arbitrary directories via directory traversal sequences in a file upload request.… | |
| Modificada | Media (5) | 6.2% | 💥 Exploit | Downstairs.dnsalias Home FTP Server | 23/11/2009 | 16/6/2026 | Home FTP Server 1.10.1.139 allows remote attackers to cause a denial of service (daemon outage) via multiple invalid SITE INDEX commands. | |
| Modificada | Media (4) | 2.4% | 💥 Exploit | Dxmsoft XM Easy Personal FTP Server | 23/11/2009 | 16/6/2026 | Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (daemon outage) via an APPE command to one socket in conjunction with a DELE command to a second socket. | |
| Modificada | Media (5) | 2.7% | 💥 Exploit | Filecopa-ftpserver FTP Server | 11/10/2009 | 16/6/2026 | FileCopa FTP Server 5.01 allows remote attackers to cause a denial of service (server hang) via a large number of crafted NOOP commands. | |
| Modificada | Media (5) | 6.4% | 💥 Exploit | Dxmsoft XM Easy Personal FTP Server | 9/10/2009 | 16/6/2026 | Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote attackers to cause a denial of service via a long argument to the (1) LIST and (2) NLST commands, a differnt issue than CVE-2008-5626 and CVE-2006-5728. | |
| Modificada | Media (5) | 11% | 💥 Exploit | Solarwinds Tftp Server | 9/9/2009 | 16/6/2026 | SolarWinds TFTP Server 9.2.0.111 and earlier allows remote attackers to cause a denial of service (service stop) via a crafted Option Acknowledgement (OACK) request. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (10) | 55% | 💥 Exploit | Netmechanica Netdecision Tftp Server | 20/5/2009 | 16/6/2026 | Multiple directory traversal vulnerabilities in NetMechanica NetDecision TFTP Server 4.2 allow remote attackers to read or modify arbitrary files via directory traversal sequences in the (1) GET or (2) PUT command. | |
| Modificada | Media (4) | 6.0% | 💥 Exploit | Typsoft FTP Server | 18/5/2009 | 16/6/2026 | TYPSoft FTP Server 1.11 allows remote attackers to cause a denial of service (CPU consumption) by sending an ABOR (abort) command without an active file transfer. | |
| Modificada | Media (5) | 45% | 💥 Exploit | Southrivertech Titan FTP Server | 6/2/2009 | 16/6/2026 | Titan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO command. | |
| Modificada | Alta (9) | 5.3% | 💥 Exploit | Wftpserver Winftp FTP Server | 29/1/2009 | 16/6/2026 | Stack-based buffer overflow in WFTPSRV.exe in WinFTP 2.3.0 allows remote authenticated users to execute arbitrary code via a long LIST argument beginning with an * (asterisk) character. | |
| Modificada | Baja (3.5) | 21% | 💥 Exploit | Wftpserver Winftp FTP Server | 19/12/2008 | 16/6/2026 | WinFTP FTP Server 2.3.0, when passive (aka PASV) mode is used, allows remote authenticated users to cause a denial of service via a sequence of FTP sessions that include an invalid "NLST -1" command. | |
| Modificada | Media (4) | 36% | 💥 Exploit | Dxmsoft XM Easy Personal FTP Server | 17/12/2008 | 16/6/2026 | XM Easy Personal FTP Server 5.6.0 allows remote authenticated users to cause a denial of service via a crafted argument to the NLST command, as demonstrated by a -1 argument. | |
| Modificada | Media (5) | 2.7% | 💥 Exploit | 5E5 Teamtek Universal FTP Server | 11/12/2008 | 16/6/2026 | Teamtek Universal FTP Server 1.0.44 allows remote attackers to cause a denial of service via (1) a certain CWD command, (2) a long LIST command, or (3) a certain PORT command. | |
| Modificada | Media (5) | 3.0% | 💥 Exploit | 5E5 Teamtek Universal FTP Server | 11/12/2008 | 16/6/2026 | Teamtek Universal FTP Server 1.0.50 allows remote attackers to cause a denial of service (daemon crash or hang) via (1) multiple STOR (aka PUT) commands, or an MKD command followed by (2) a '*' argument, (3) a '|' argument, (4) spaces, or (5) a long string. NOTE: the provenance of this information is unknown; the… | |
| Modificada | Alta (10) | 6.4% | 💥 Exploit | South River Technologies Titan FTP Server | 29/11/2008 | 16/6/2026 | Heap-based buffer overflow in Titan FTP Server 6.05 build 550 allows remote attackers to execute arbitrary code via a long DELE command. | |
| Modificada | Alta (10) | 12% | 💥 Exploit | Karjasoft Sami FTP Server | 17/11/2008 | 16/6/2026 | Buffer overflow in KarjaSoft Sami FTP Server 2.0.x allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long argument to an arbitrary command, which triggers the overflow when the SamyFtp.binlog log file is viewed in the management console. NOTE: this may… | |
| Modificada | Media (5) | 2.7% | 💥 Exploit | Karjasoft Sami FTP Server | 17/11/2008 | 16/6/2026 | KarjaSoft Sami FTP Server 2.0.x allows remote attackers to cause a denial of service (daemon crash or hang) via certain (1) APPE, (2) CWD, (3) DELE, (4) MKD, (5) RMD, (6) RETR, (7) RNFR, (8) RNTO, (9) SIZE, and (10) STOR commands. | |
| Modificada | Alta (10) | 65% | 💥 Exploit | Tftp Server SP | 12/5/2008 | 16/6/2026 | Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a long TFTP error packet. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (7.5) | 54% | 💥 Exploit | Tallsoft Quick Tftp Server PRO | 1/4/2008 | 16/6/2026 | Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service or execute arbitrary code via a long mode field in a read or write request. | |
| Modificada | Alta (10) | 68% | 💥 Exploit | Tftp-server Winagents Tftp Server | 1/4/2008 | 16/6/2026 | Stack-based buffer overflow in TFTP Server SP 1.4 for Windows allows remote attackers to cause a denial of service or execute arbitrary code via a long filename in a read or write request. | |
| Modificada | Media (5) | 2.9% | 💥 Exploit | ARI Pikivirta Home FTP Server | 24/3/2008 | 16/6/2026 | Home FTP Server 1.4.5.89 allows remote attackers to cause a denial of service (crash) by opening a FTP passive mode connection, then closing the original FTP connection. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (10) | 3.4% | — | Titan FTP Server | 12/2/2008 | 16/6/2026 | Multiple heap-based buffer overflows in the (1) FTP service and (2) administration service in Titan FTP Server 6.0.5.549 allow remote attackers to cause a denial of service (daemon hang) and possibly execute arbitrary code via a long command. NOTE: the USER and PASS commands for the FTP service are covered by… | |
| Modificada | Alta (9.3) | 7.7% | 💥 Exploit | South River Technologies Titan FTP Server | 12/2/2008 | 16/6/2026 | Multiple heap-based buffer overflows in Titan FTP Server 6.03 and 6.0.5.549 allow remote attackers to cause a denial of service (daemon crash or hang) and possibly execute arbitrary code via a long argument to the (1) USER or (2) PASS command, different vectors than CVE-2004-1641. | |
| Modificada | Media (6.8) | 1.3% | — | Xlight FTP Server | 6/2/2008 | 16/6/2026 | The LDAP authentication feature in XLight FTP Server before 2.83, when used with some unspecified LDAP servers, does not check for blank passwords, which allows remote attackers to bypass intended access restrictions. |