Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

478 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)5.1%💥 ExploitTranssoft Broker FTP Server20/9/200116/6/2026
Broker FTP Server 5.9.5.0 allows a remote attacker to cause a denial of service by repeatedly issuing an invalid CD or CWD ("CD . .") command.
ModificadaAlta (7.5)3.0%—Argosoft FTP Server31/8/200116/6/2026
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.
ModificadaMedia (4.6)0.56%—BEN Spink Crushftp FTP Server22/8/200116/6/2026
Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a '..' (dot dot) attack, or variations, in (1) GET, (2) CD, (3) NLST, (4) SIZE, (5) RETR.
ModificadaMedia (5)1.9%—Grant Averett Cerberus FTP Server21/8/200116/6/2026
Directory traversal vulnerability in Cerberus FTP Server 1.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the CD command.
ModificadaAlta (7.5)42%💥 ExploitProgress WS FTP Server26/7/200116/6/2026
Buffer overflows in WS_FTP 2.02 allow remote attackers to execute arbitrary code via long arguments to (1) DELE, (2) MDTM, (3) MLST, (4) MKD, (5) RMD, (6) RNFR, (7) RNTO, (8) SIZE, (9) STAT, (10) XMKD, or (11) XRMD.
ModificadaAlta (7.5)4.2%—IBM Alphaworks Tftp Server20/7/200116/6/2026
Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.
ModificadaMedia (5)2.0%💥 ExploitArgosoft FTP Server12/7/200116/6/2026
ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges.
ModificadaAlta (7.5)3.3%—Transsoft Broker FTP Server2/7/200116/6/2026
Transsoft Broker 5.9.5.0 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.
ModificadaAlta (7.5)3.3%—Argosoft FTP Server1/7/200116/6/2026
ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.
ModificadaMedia (5)1.8%—Alex Linde Alexs FTP Server27/6/200116/6/2026
Directory traversal vulnerability in Alex's FTP Server 0.7 allows remote attackers to read arbitrary files via a ... (modified dot dot) in the (1) GET or (2) CD commands.
ModificadaMedia (6.4)1.7%—Transsoft Broker FTP Server27/6/200116/6/2026
Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.
ModificadaMedia (5)3.0%💥 ExploitGene6 G6 FTP Server18/6/200116/6/2026
Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.
ModificadaAlta (7.5)2.4%💥 ExploitGene6 G6 FTP Server18/6/200116/6/2026
Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows attackers to read file attributes outside of the web root via the (1) SIZE and (2) MDTM commands when the "show relative paths" option is not enabled.
ModificadaMedia (5)7.5%💥 ExploitFastream Ftp++ ServerFastream FTP Server2/6/200116/6/2026
FaSTream FTP++ Server 2.0 allows remote attackers to list arbitrary directories by using the "ls" command and including the drive letter name (e.g. C:) in the requested pathname.
ModificadaMedia (5)1.7%—Typsoft FTP Server3/5/200116/6/2026
Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.
ModificadaMedia (5)1.6%—Goodtech FTP Server 95 98Goodtech FTP Server NT 200026/3/200116/6/2026
GoodTech FTP server 3.0.1.2.1.0 and earlier allows remote attackers to cause a denial of service via a flood of connections to the server, which causes it to crash.
ModificadaAlta (7.5)7.9%💥 ExploitTranssoft Broker FTP Server9/1/200116/6/2026
Buffer overflow in TransSoft Broker FTP Server before 4.3.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long command.
ModificadaMedia (5)1.7%—Goodtech FTP Server 95 98Goodtech FTP Server NT 200020/10/200016/6/2026
GoodTech FTP server allows remote attackers to cause a denial of service via a large number of RNTO commands.
ModificadaMedia (5)1.7%—IBM OS2 FTP Server20/10/200016/6/2026
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.
ModificadaMedia (5)2.5%💥 ExploitDeerfield Serv-u Ftp-server1/12/199916/6/2026
Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command.
ModificadaMedia (5)7.1%💥 ExploitGene6 G6 FTP Server17/11/199916/6/2026
Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user name or (2) password.
ModificadaAlta (7.5)67%💥 ExploitBisonware FTP Server17/5/199916/6/2026
Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via long (1) USER, (2) LIST, or (3) CWD commands.
ModificadaMedia (5)1.3%—Bisonware FTP Server17/5/199916/6/2026
BisonWare FTP Server 4.1 and earlier allows remote attackers to cause a denial of service via a malformed PORT command that contains a non-numeric character and a large number of carriage returns.
ModificadaMedia (4.6)4.9%💥 ExploitIpswitch ImailProgress WS FTP Server2/2/199916/6/2026
IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.
ModificadaMedia (5)2.1%—Ipswitch WS FTP Server2/2/199916/6/2026
WS_FTP server remote denial of service through cwd command.