Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
–

478 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)9.7%💥 ExploitKmint21 Software Golden FTP Server28/12/200516/6/2026
Buffer overflow in Golden FTP Server 1.92 allows remote attackers to execute arbitrary code via a long APPE command. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
ModificadaMedia (5)7.7%💥 ExploitTypsoft FTP Server23/10/200516/6/2026
Typsoft FTP Server 1.11, with "Sub Directory Include" enabled, allows remote attackers to cause a denial of service (crash) by sending multiple RETR commands. NOTE: it was later reported that 1.10 is also affected.
ModificadaMedia (5)1.4%—ARI Pikivirta Home FTP Server30/8/200516/6/2026
Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home directory, which allows remote authenticated users to obtain sensitive information by obtaining ftpmembers.lst and ftpsettings.lst.
ModificadaMedia (5)1.7%—ARI Pikivirta Home FTP Server30/8/200516/6/2026
Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via "C:\" (Windows drive letter) sequences in commands such as (1) LIST or (2) RETR.
ModificadaAlta (7.5)5.2%—Winftp Server23/8/200516/6/2026
Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request.
ModificadaMedia (5)3.7%💥 ExploitPablo Software Solutions Quick N Easy FTP Server5/8/200516/6/2026
Quick 'n Easy FTP Server 3.0 allows remote attackers to cause a denial of service (application crash or CPU consumption) via a long USER command.
ModificadaBaja (2.1)0.72%—Kmint21 Software Golden FTP Server5/7/200516/6/2026
Directory traversal vulnerability in Golden FTP Server 2.60 allows remote authenticated attackers to list arbitrary directories via a "\.." (backslash dot dot) in an LS (LIST) command.
ModificadaAlta (7.8)3.3%—Futuresoft Tftp Server 20001/6/200516/6/2026
Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.
ModificadaAlta (10)63%💥 ExploitFuturesoft Tftp Server 20001/6/200516/6/2026
Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to execute arbitrary code via a long (1) filename or (2) transfer mode string in a Read Request (RRQ) or Write Request (WRQ) packet.
ModificadaAlta (7.5)10.0%💥 ExploitOrenosv Http FTP Server18/5/200516/6/2026
Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via long arguments to FTP commands such as MKD, RMD, or DELE, which are processed by the (1) ftp_xlate_path, (2) ftp_is_canonical, or (3)…
ModificadaMedia (5)1.7%—Kmint21 Software Golden FTP Server11/5/200516/6/2026
Directory traversal vulnerability in Golden FTP server pro 2.52 allows remote attackers to read arbitrary files via a "\.." (backward slash dot dot) with a leading '"' (double quote) in the GET command.
ModificadaMedia (5)1.4%—Kmint21 Software Golden FTP Server11/5/200516/6/2026
Golden FTP Server Pro 2.52 allows remote attackers to obtain sensitive information via a GET request for a file that does not exist, which reveals the absolute path of the FTP server in the resulting FTP error message.
ModificadaAlta (10)61%💥 ExploitGlobalscape Secure FTP Server3/5/200516/6/2026
Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a long FTP command.
ModificadaAlta (7.2)1.1%💥 ExploitBulletproof FTP Server3/5/200516/6/2026
BPFTPServer service in BulletProof FTP Server 2.4.0.31 does not properly drop privileges before opening files through the Help menu, which allows local users to gain privileges.
ModificadaMedia (5)3.2%💥 ExploitCode Ocean Ocean FTP Server2/5/200516/6/2026
Code Ocean FTP server 1.0 allows remote attackers to cause a denial of service via a large number of connections.
ModificadaAlta (7.5)10%💥 ExploitKmint21 Software Golden FTP Server2/5/200516/6/2026
Buffer overflow in Golden FTP Server 1.92 allows remote attackers to execute arbitrary code via a long USER command.
ModificadaMedia (5)1.4%—Novell Ichain Mini FTP ServerAI15/3/200516/6/2026
Novell iChain Mini FTP Server 2.3 displays different error messages if a user exists or not, which allows remote attackers to obtain sensitive information and facilitates brute force attacks.
ModificadaAlta (7.5)4.7%—Argosoft FTP Server8/3/200516/6/2026
Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DELE command. NOTE: this issue was later reported to also affect 1.4.3.5.
ModificadaBaja (2.1)0.38%—Gene6 G6 FTP Server7/3/200516/6/2026
Gene6 FTP Server does not properly restrict access to the control console, which allows local users to modify the server configuration and gain privileges, as demonstrated by defining a SITE command.
ModificadaAlta (10)3.7%—Argosoft FTP Server23/2/200516/6/2026
ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE COPY command, a different vulnerability than CVE-2005-0519.
ModificadaAlta (10)3.8%—Argosoft FTP Server18/2/200516/6/2026
ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK file onto the server, then accessing the file, a different vulnerability than CVE-2005-0520.
ModificadaAlta (7.5)16%💥 ExploitKmint21 Software Golden FTP Server22/1/200516/6/2026
Buffer overflow in Golden FTP Server Pro (goldenftpd) 2.x allows remote attackers to execute arbitrary code via a long RNTO command.
ModificadaMedia (5)50%💥 ExploitIpswitch WS FTP Server10/1/200516/6/2026
Multiple buffer overflows in WS_FTP Server 5.03 2004.10.14 allow remote attackers to cause a denial of service (service crash) via long (1) SITE, (2) XMKD, (3) MKD, and (4) RNFR commands.
ModificadaMedia (5)8.1%—Ipswitch WS FTP ServerProgress WS FTP Server31/12/200416/6/2026
Ipswitch WS_FTP Server 4.0.2 allows remote attackers to cause a denial of service (disk consumption) and bypass file size restrictions via a REST command with a large size argument, followed by a STOR of a smaller file.
ModificadaBaja (2.1)1.1%💥 ExploitCrob FTP Server31/12/200416/6/2026
Directory traversal vulnerability in Crob FTP Server 3.5.1 allows local users to browse outside the FTP root via multiple ../ (dot dot slash) in the DIR command.