Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2811▼ 173 respecto a la semana anterior
Críticas / altas1356▲ 48 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)267▼ 256 respecto a la semana anterior
–

13 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4)2.4%—Dxm2008 XM Easy Personal FTP Server29/11/200916/6/2026
XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (crash) by uploading or creating a large number of files or directories, then performing a LIST command.
ModificadaMedia (4)2.4%—Dxmsoft XM Easy Personal FTP Server23/11/200916/6/2026
Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (daemon outage) via an APPE command to one socket in conjunction with a DELE command to a second socket.
ModificadaMedia (5)6.4%—Dxmsoft XM Easy Personal FTP Server9/10/200916/6/2026
Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote attackers to cause a denial of service via a long argument to the (1) LIST and (2) NLST commands, a differnt issue than CVE-2008-5626 and CVE-2006-5728.
ModificadaMedia (4)36%—Dxmsoft XM Easy Personal FTP Server17/12/200816/6/2026
XM Easy Personal FTP Server 5.6.0 allows remote authenticated users to cause a denial of service via a crafted argument to the NLST command, as demonstrated by a -1 argument.
ModificadaAlta (7.5)5.0%—Dxmsoft XM Easy Personal FTP Server2/3/200716/6/2026
Multiple buffer overflows in XM Easy Personal FTP Server 5.3.0 allow remote attackers to execute arbitrary code via unspecified vectors. NOTE: this issue might overlap CVE-2006-2225, CVE-2006-2226, or CVE-2006-5728.
ModificadaMedia (5)3.4%—Dxmsoft XM Easy Personal FTP Server27/12/200616/6/2026
Format string vulnerability in XM Easy Personal FTP Server 5.2.1 allows remote attackers to cause a denial of service (application crash) via format string specifiers in the USER command or certain other available or nonexistent commands. NOTE: It was later reported that 5.3.0 is also vulnerable.
ModificadaMedia (5)2.2%—Dxmsoft XM Easy Personal FTP Server27/12/200616/6/2026
Format string vulnerability in XM Easy Personal FTP Server 5.0.1 allows remote attackers to cause a denial of service (application crash) via format string specifiers in a long PORT command. NOTE: this issue might be related to CVE-2006-2226.
ModificadaMedia (4)2.4%—Dxmsoft XM Easy Personal FTP Server6/11/200616/6/2026
XM Easy Personal FTP Server 5.2.1 and earlier allows remote authenticated users to cause a denial of service via a long argument to the NLST command, possibly involving the -al flags.
ModificadaMedia (5)3.5%—Dxmsoft XM Easy Personal FTP Server5/5/200616/6/2026
Buffer overflow in XM Easy Personal FTP Server 4.2 and 5.0.1 allows remote authenticated users to cause a denial of service via a long argument to the PORT command.
ModificadaAlta (7.5)6.0%—Dxmsoft XM Easy Personal FTP Server5/5/200616/6/2026
Buffer overflow in XM Easy Personal FTP Server 4.3 and earlier allows remote attackers to execute arbitrary code, probably via a USER command with a long username.
ModificadaAlta (7.5)3.9%—Cooolsoft Personal FTP Server27/5/200316/6/2026
Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument.
ModificadaMedia (6.4)1.6%—Cooolsoft Personal FTP Server31/3/200316/6/2026
Directory traversal vulnerability in CooolSoft Personal FTP Server 2.24 allows remote attackers to read or modify arbitrary files via .. (dot dot) sequences in the commands (1) LIST (ls), (2) mkdir, (3) put, or (4) get.
ModificadaMedia (5)1.3%—Cooolsoft Personal FTP Server31/3/200316/6/2026
CooolSoft Personal FTP Server 2.24 allows remote attackers to obtain the absolute pathname of the FTP root via a PWD command, which includes the full path in the response.