Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
–

276 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.3%—Troglobit Uftpd15/6/202017/6/2026
In uftpd before 2.12, handle_CWD in ftpcmd.c mishandled the path provided by the user, causing a NULL pointer dereference and denial of service, as demonstrated by a CWD /.. command.
ModificadaAlta (7.5)1.4%—Ftpdmin Project Ftpdmin17/4/202017/6/2026
A buffer overflow vulnerability in FTPDMIN 0.96 allows attackers to crash the server via a crafted packet.
ModificadaAlta (7.5)6.0%💥 ExploitPureftpd Pure-ftpdDebian LinuxFedoraproject Extra Packages FOR Enterprise LinuxFedoraproject Fedora+126/2/202017/6/2026
An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases linked list. When the *lookup_alias(const char alias) or print_aliases(void) function is called, they fail to correctly detect the end of the linked list and try to access a non-existent list member.…
ModificadaAlta (7.5)7.1%💥 ExploitPureftpd Pure-ftpdFedoraproject Fedora24/2/202017/6/2026
An issue was discovered in Pure-FTPd 1.0.49. An out-of-bounds (OOB) read has been detected in the pure_strcmp function in utils.c.
ModificadaAlta (8.8)12%💥 PoCProftpdDebian LinuxFedoraproject FedoraOpensuse Backports SLE+320/2/202017/6/2026
In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool in pool.c, and possible remote code execution.
ModificadaAlta (7.5)2.1%—ProftpdSiemens Simatic NET CP 1543-1 FirmwareSiemens Simatic NET CP 1545-1 FirmwareOpensuse Backports SLE+120/2/202017/6/2026
ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap via the cap_text.c cap_to_text function.
ModificadaAlta (7.2)1.2%—Troglobit Uftpd22/1/202017/6/2026
In uftpd before 2.11, it is possible for an unauthenticated user to perform a directory traversal attack using multiple different FTP commands and read and write to arbitrary locations on the filesystem due to the lack of a well-written chroot jail in compose_abspath(). This has been fixed in version 2.11
ModificadaCrítica (9.8)2.0%—Bftpd Project Bftpd10/1/202017/6/2026
An issue was discovered in Bftpd before 5.4. There is a heap-based off-by-one error during file-transfer error checking.
ModificadaCrítica (9.1)1.7%—Bftpd Project Bftpd10/1/202017/6/2026
An issue was discovered in Bftpd 5.3. Under certain circumstances, an out-of-bounds read is triggered due to an uninitialized value. The daemon crashes at startup in the hidegroups_init function in dirlist.c.
ModificadaAlta (8.8)1.1%—Troglobit Uftpd6/1/202017/6/2026
In uftpd before 2.11, there is a buffer overflow vulnerability in handle_PORT in ftpcmd.c that is caused by a buffer that is 16 bytes large being filled via sprintf() with user input based on the format specifier string %d.%d.%d.%d. The 16 byte size is correct for valid IPv4 addresses (len('255.255.255.255')…
ModificadaAlta (7.5)4.4%💥 ExploitPureftpd Pure-ftpdFedoraproject Fedora31/12/201917/6/2026
In Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.
ModificadaAlta (8.8)2.8%💥 PoCFreeftpd3/12/201917/6/2026
freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging is disabled).
ModificadaMedia (4.9)1.6%—ProftpdFedoraproject FedoraDebian Linux30/11/201917/6/2026
An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This pointer is returned by the OpenSSL sk_X509_REVOKED_value() function when encountering an empty CRL installed by a system administrator. The dereference occurs when validating the certificate of a client…
ModificadaCrítica (9.8)96%💥 ExploitVsftpd Project VsftpdDebian Linux27/11/201916/6/2026
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
ModificadaAlta (7.5)0.95%—Proftpd26/11/201917/6/2026
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initialized to NULL) leads to a crash when validating the certificate of a client connecting to the server in a TLS client/server mutual-authentication setup.
ModificadaAlta (7.5)1.3%—Proftpd26/11/201917/6/2026
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. A wrong iteration variable, used when checking a client certificate against CRL entries (installed by a system administrator), can cause some CRL entries to be ignored, and can allow clients whose certificates have been revoked to proceed with a…
ModificadaAlta (7.5)1.1%—ProftpdFedoraproject Fedora26/11/201917/6/2026
An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. Failure to check for the appropriate field of a CRL entry (checking twice for subject, rather than once for subject and once for issuer) prevents some valid CRLs from being taken into account, and can allow clients whose certificates have been…
ModificadaAlta (7.5)20%💥 ExploitProftpd21/10/201917/6/2026
ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long commands because main.c in a child process enters an infinite loop.
ModificadaCrítica (9.8)58%💥 PoCProftpdFedoraproject FedoraDebian LinuxSiemens Simatic CP 1543-1 Firmware19/7/201917/6/2026
An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-2015-3306.
ModificadaAlta (7.5)1.2%—Bftpd Project Bftpd19/11/201717/6/2026
In Bftpd before 4.7, there is a memory leak in the file rename function.
ModificadaMedia (5.3)0.56%—Psftpd15/11/201717/6/2026
The PSFTPd 10.0.4 Build 729 server stores its configuration inside PSFTPd.dat. This file is a Microsoft Access Database and can be extracted. The application sets the encrypt flag with the password "ITsILLEGAL"; however, this password is not required to extract the data. Cleartext is used for a user password.
ModificadaMedia (5.9)8.7%💥 ExploitPsftpd15/11/201717/6/2026
A use-after-free issue could be triggered remotely in the SFTP component of PSFTPd 10.0.4 Build 729. This issue could be triggered prior to authentication. The PSFTPd server did not automatically restart, which enabled attackers to perform a very effective DoS attack against this service. By sending a crafted SSH…
ModificadaMedia (5.3)7.0%💥 ExploitPsftpd15/11/201717/6/2026
The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file. This can be used by attackers to hide data in the Graphical User Interface (GUI) view and create arbitrary entries to a certain extent. Special characters such as '"' and ',' and '\r' are not…
ModificadaMedia (4.3)1.5%—Psftpd15/11/201717/6/2026
The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default. These can be performed using "nmap -b" and allow performing scans via the FTP server.
ModificadaCrítica (9.8)1.5%—Pureftpd Pure-ftpdFedoraproject Fedora21/9/201717/6/2026
Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to packaging error due to which the original configuration was ignored after update and service started running with default configuration. This has security implications because of overriding security-related configuration. This issue…
Orbitaley — Vulnerabilidades