Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2748▲ 37 respecto a la semana anterior
Críticas / altas1479▲ 369 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.6) | 0.18% | — | Globalscape CuteftpAI | 25/5/2026 | 23/7/2026 | CuteFTP 5.0 XP contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by injecting malicious payload into the Site Manager label field. Attackers can craft a payload exceeding 520 bytes that overwrites the return address and executes shellcode when a shortcut is created and… | |
| Modificada | Media (5.5) | 0.30% | — | Globalscape Cuteftp | 2/2/2024 | 17/6/2026 | A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument Host/Username/Password leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and… | |
| Modificada | Alta (9.3) | 4.7% | — | Globalscape Cuteftp | 30/9/2009 | 16/6/2026 | Heap-based buffer overflow in the Create New Site feature in GlobalSCAPE CuteFTP Professional, Home, and Lite 8.3.3 and 8.3.3.0054 allows user-assisted remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a site list containing an entry with a long label. | |
| Modificada | Alta (9.3) | 2.6% | — | Globalscape Cuteftp | 19/6/2008 | 16/6/2026 | Directory traversal vulnerability in GlobalSCAPE CuteFTP Home 8.2.0 Build 02.26.2008.4 and CuteFTP Pro 8.2.0 Build 04.01.2008.1 allows remote FTP servers to create or overwrite arbitrary files via ..\ (dot dot backslash) sequences in responses to LIST commands, a related issue to CVE-2002-1345. NOTE: this can be… | |
| Modificada | Media (5) | 1.1% | — | Globalscape Cuteftp | 10/1/2005 | 16/6/2026 | Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of service (application crash) via large replies to FTP commands. | |
| Modificada | Baja (2.1) | 0.48% | — | Globalscape Cuteftp | 31/12/2003 | 16/6/2026 | Buffer overflow in CuteFTP 5.0 and 5.0.1 allows local users to cause a denial of service (crash) by copying a long URL into a clipboard. | |
| Modificada | Alta (7.6) | 8.7% | — | Globalscape Cuteftp | 31/12/2003 | 16/6/2026 | Buffer overflow in CuteFTP 5.0 allows remote attackers to execute arbitrary code via a long response to a LIST command. | |
| Modificada | Alta (7.5) | 3.9% | — | Globalscape CuteftpAI | 31/12/2003 | 16/6/2026 | Buffer overflow in CuteFTP 4.2 and 5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner. | |
| Modificada | Media (5) | 0.88% | — | Globalscape Cuteftp | 6/1/2000 | 16/6/2026 | CuteFTP uses weak encryption to store password information in its tree.dat file. |