Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2720▼ 598 respecto a la semana anterior
Críticas / altas1299▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
54 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 14% | 💥 Exploit | Ipswitch WS FTP HomeIpswitch WS FTP PRO | 20/8/2008 | 16/6/2026 | Format string vulnerability in Ipswitch WS_FTP Home 2007.0.0.2 and WS_FTP Professional 2007.1.0.0 allows remote FTP servers to cause a denial of service (application crash) or possibly execute arbitrary code via format string specifiers in a connection greeting (response). | |
| Modificada | Media (5) | 5.6% | — | Ipswitch WS FTP | 6/2/2008 | 16/6/2026 | The Logging Server (ftplogsrv.exe) 7.9.14.0 and earlier in IPSwitch WS_FTP 6.1 allows remote attackers to cause a denial of service (loss of responsiveness) via a large number of large packets to port 5151/udp, which causes the listening socket to terminate and prevents log commands from being recorded, a different… | |
| Modificada | Alta (9) | 22% | 💥 Exploit | Progress WS FTP Server | 5/2/2008 | 16/6/2026 | Buffer overflow in Ipswitch WS_FTP Server with SSH 6.1.0.0 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long opendir command. | |
| Modificada | Media (4.3) | 1.6% | — | Ipswitch WS FTP | 28/8/2007 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in Ipswitch WS_FTP allows remote attackers to inject arbitrary web script or HTML via arguments to a valid command, which is not properly handled when it is displayed by the view log option in the administration interface. NOTE: this can be leveraged to create a new admin… | |
| Modificada | Alta (7.8) | 25% | — | Ipswitch WS FTP | 17/7/2007 | 16/6/2026 | The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp. | |
| Modificada | Alta (7.8) | 4.6% | — | Ipswitch WS FTP | 24/4/2007 | 16/6/2026 | Unspecified vulnerability in the Initialize function in NetscapeFTPHandler in WS_FTP Home and Professional 2007 allows remote attackers to cause a denial of service (NULL dereference and application crash) via unspecified vectors related to "improper arguments." | |
| Modificada | Media (6.8) | 1.9% | — | Ipswitch WS FTP Server | 2/2/2007 | 16/6/2026 | Ipswitch WS_FTP Server 5.04 allows FTP site administrators to execute arbitrary code on the system via a long input string to the (1) iFTPAddU or (2) iFTPAddH file, or to a (3) edition module. | |
| Modificada | Media (6.8) | 3.3% | — | Ipswitch WS FTP PRO | 2/2/2007 | 16/6/2026 | Format string vulnerability in the SCP module in Ipswitch WS_FTP 2007 Professional might allow remote attackers to execute arbitrary commands via format string specifiers in the filename, related to the SHELL WS_FTP script command. | |
| Modificada | Alta (7.5) | 3.4% | — | Ipswitch WS FTP PRO | 18/1/2007 | 16/6/2026 | Buffer overflow in wsbho2k0.dll, as used by wsftpurl.exe, in Ipswitch WS_FTP 2007 Professional allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long ftp:// URL in an HTML document, and possibly other vectors. | |
| Modificada | Media (6.5) | 65% | — | Ipswitch WS FTP ServerProgress WS FTP Server | 26/9/2006 | 16/6/2026 | Multiple buffer overflows in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, have unknown impact and remote authenticated attack vectors via the (1) XCRC, (2) XMD5, and (3) XSHA1 commands. NOTE: in the early publication of this identifier on 20060926, the description was used for the wrong… | |
| Modificada | Media (5) | 32% | — | Ipswitch WS FTP ServerProgress WS FTP Server | 26/9/2006 | 16/6/2026 | Unspecified vulnerability in the log analyzer in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, prevents certain sensitive information from being displayed in the (1) Files and (2) Summary tabs. NOTE: in the early publication of this identifier on 20060926, the description was used for… | |
| Modificada | Alta (7.5) | 4.2% | 💥 Exploit | Ipswitch WS FTP Server | 25/9/2006 | 16/6/2026 | Buffer overflow in Ipswitch WS_FTP Limited Edition (LE) 5.08 allows remote FTP servers to execute arbitrary code via a long response to a PASV command. | |
| Modificada | Media (6.5) | 85% | 💥 Exploit | Ipswitch WS FTP ServerProgress WS FTP Server | 19/9/2006 | 16/6/2026 | Multiple buffer overflows in Ipswitch WS_FTP Server 5.05 before Hotfix 1 allow remote authenticated users to execute arbitrary code via long (1) XCRC, (2) XSHA1, or (3) XMD5 commands. | |
| Modificada | Media (5) | 50% | 💥 Exploit | Ipswitch WS FTP Server | 10/1/2005 | 16/6/2026 | Multiple buffer overflows in WS_FTP Server 5.03 2004.10.14 allow remote attackers to cause a denial of service (service crash) via long (1) SITE, (2) XMKD, (3) MKD, and (4) RNFR commands. | |
| Modificada | Media (5) | 8.1% | — | Ipswitch WS FTP ServerProgress WS FTP Server | 31/12/2004 | 16/6/2026 | Ipswitch WS_FTP Server 4.0.2 allows remote attackers to cause a denial of service (disk consumption) and bypass file size restrictions via a REST command with a large size argument, followed by a STOR of a smaller file. | |
| Modificada | Alta (7.2) | 5.2% | 💥 Exploit | Progress WS FTP Server | 31/12/2004 | 16/6/2026 | Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code by causing a large error string to be generated by the ALLO handler, or (2) may allow remote FTP administrators to execute arbitrary code by causing a long hostname or username to be inserted into a… | |
| Modificada | Alta (7.2) | 3.5% | — | Progress WS FTP Server | 31/12/2004 | 16/6/2026 | Ipswitch WS_FTP Server 4.0.2 allows remote authenticated users to execute arbitrary programs as SYSTEM by using the SITE command to modify certain iFtpSvc options that are handled by iftpmgr.exe. | |
| Modificada | Media (5) | 7.5% | 💥 Exploit | Progress WS FTP Server | 29/8/2004 | 16/6/2026 | WS_FTP 5.0.2 allows remote authenticated users to cause a denial of service (CPU consumption) via a CD command that contains an invalid path with a "../" sequence. | |
| Modificada | Alta (7.5) | 5.8% | — | Ipswitch WS FTP PROIpswitch WS FTP ServerProgress WS FTP Server | 23/3/2004 | 16/6/2026 | Ipswitch WS_FTP Server 4.0.2 has a backdoor XXSESS_MGRYY username with a default password, which allows remote attackers to gain access. | |
| Modificada | Alta (7.5) | 9.8% | 💥 Exploit | HD Soft Windows FTP Server | 17/2/2004 | 16/6/2026 | Format string vulnerability in HD Soft Windows FTP Server 1.6 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username, which is processed by the wscanf function. | |
| Modificada | Alta (7.5) | 85% | 💥 Exploit | Ipswitch WS FTP ServerProgress WS FTP Server | 22/9/2003 | 16/6/2026 | Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via long (1) APPE (append) or (2) STAT (status) arguments. | |
| Modificada | Alta (7.5) | 4.2% | 💥 Exploit | Browseftp Client | 31/12/2002 | 16/6/2026 | Buffer overflow in BrowseFTP 1.62 client allows remote FTP servers to execute arbitrary code via a long FTP "220" message reply. | |
| Modificada | Alta (7.5) | 3.4% | — | Ipswitch WS FTP PRO | 31/12/2002 | 16/6/2026 | Buffer overflow in WS_FTP Pro 7.5 allows remote attackers to execute code on a client system via unknown attack vectors. | |
| Modificada | Alta (7.5) | 12% | — | Progress WS FTP Server | 12/8/2002 | 16/6/2026 | Buffer overflow in WS_FTP FTP Server 3.1.1 allows remote authenticated users to execute arbitrary code via a long SITE CPWD command. | |
| Modificada | Alta (7.5) | 42% | 💥 Exploit | Progress WS FTP Server | 26/7/2001 | 16/6/2026 | Buffer overflows in WS_FTP 2.02 allow remote attackers to execute arbitrary code via long arguments to (1) DELE, (2) MDTM, (3) MLST, (4) MKD, (5) RMD, (6) RNFR, (7) RNTO, (8) SIZE, (9) STAT, (10) XMKD, or (11) XRMD. |