Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2835▲ 33 respecto a la semana anterior
Críticas / altas1495▲ 276 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 451 respecto a la semana anterior
97 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.5) | 0.78% | — | H Peter Anvin Tftp-hpaAI | 15/9/2026 | 16/9/2026 | A flaw was found in tftp-hpa. When the `in.tftpd` remap engine processes an inverse remap rule that also aborts with a non-empty custom error message, it can pass invalid match offsets to the `genmatchstring()` function. This leads to out-of-bounds read/write operations. A remote, unauthenticated attacker can exploit… | |
| Aplazada | Alta (8.2) | 0.36% | — | Hfiref0x LightftpAI | 6/8/2026 | 24/9/2026 | LightFTP through 2.4 contains multiple data race vulnerabilities in ftpserv.c that allow anonymous attackers to cause undefined behavior by issuing LIST followed by ABOR commands without authentication. The control thread closes data_socket and file_fd descriptors while worker threads concurrently operate on the same… | |
| Aplazada | Alta (8.2) | 0.40% | — | Hfiref0x LightftpAI | 31/7/2026 | 9/9/2026 | LightFTP 2.3.1 contains a residual race condition vulnerability (an incomplete fix for CVE-2024-11144) in the worker_thread_cleanup() function of ftpserv.c that allows remote unauthenticated attackers to destabilize or crash the daemon by triggering unsynchronized access to shared per-connection state without holding… | |
| Pendiente de análisis | Alta (8.5) | 0.17% | — | Tftp BroadbandAI | 19/6/2026 | 29/9/2026 | TFTP Broadband 4.3.0.1465 contains an unquoted service path vulnerability in the tftpt.exe service binary that allows local attackers to execute arbitrary code with system privileges. Attackers can place a malicious executable in the Program Files directory path that will be executed during service startup or system… | |
| Analizada | Media (6.9) | 0.21% | — | Nsasoft Spotftp | 12/4/2026 | 17/6/2026 | SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generate a 256-byte payload, paste it into the Name input field, and trigger a crash when submitting the… | |
| Analizada | Alta (8.6) | 0.21% | — | Xlightftpd Xlight FTP Server | 5/4/2026 | 24/7/2026 | Xlight FTP Server 3.9.1 contains a structured exception handler (SEH) overwrite vulnerability that allows local attackers to crash the application and overwrite SEH pointers by supplying a crafted buffer string. Attackers can inject a 428-byte payload through the program execution field in virtual server configuration… | |
| Analizada | Media (6.9) | 0.21% | — | Smartftp | 30/3/2026 | 17/6/2026 | SmartFTP Client 9.0.2615.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Host field. Attackers can paste a buffer of 300 repeated characters into the Host connection parameter to trigger an application crash. | |
| Aplazada | Baja (2.3) | 0.48% | — | Erlang OTPAIErlang InetsAIErlang TftpAI | 20/2/2026 | 24/7/2026 | Relative Path Traversal, Improper Isolation or Compartmentalization vulnerability in erlang otp erlang/otp (tftp_file modules), erlang otp inets (tftp_file modules), erlang otp tftp (tftp_file modules) allows Relative Path Traversal. This vulnerability is associated with program files lib/tftp/src/tftp_file.erl,… | |
| Aplazada | Alta (7.5) | 0.41% | — | Open Tftp Server MultithreadedAI | 12/2/2026 | 17/6/2026 | A heap buffer overflow in the processRequest function of Open TFTP Server MultiThreaded v1.7 allows attackers to cause a Denial of Service (DoS) via a crafted DATA packet. | |
| Analizada | Media (4.6) | 0.33% | — | Nsasoft Spotftp | 11/2/2026 | 29/6/2026 | SpotFTP 3.0.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste it into the 'Name' field to trigger an application crash. | |
| Analizada | Media (4.6) | 0.44% | — | Nsasoft Spotftp | 11/2/2026 | 29/6/2026 | SpotFTP 3.0.0.0 contains a buffer overflow vulnerability in the registration key input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Key' field to trigger an application crash and denial of service. | |
| Aplazada | Media (6.7) | 0.43% | — | Spotftp-ftp Password RecoverAI | 7/2/2026 | 17/6/2026 | SpotFTP-FTP Password Recover 2.4.8 contains a denial of service vulnerability that allows attackers to crash the application by generating a large buffer overflow. Attackers can create a text file with 1000 'Z' characters and input it as a registration code to trigger the application crash. | |
| Aplazada | Alta (8.5) | 0.14% | — | Tftp TurboAI | 1/2/2026 | 17/6/2026 | TFTP Turbo 4.6.1273 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious executables that will be launched with LocalSystem permissions. | |
| Analizada | Media (4.6) | 0.53% | — | Smartftp | 16/1/2026 | 17/6/2026 | SmartFTP Client 10.0.2909.0 contains multiple denial of service vulnerabilities that allow attackers to crash the application through specific input manipulation. Attackers can trigger crashes by entering malformed paths, using invalid IP addresses, or clearing connection history in the client's interface. | |
| Aplazada | Alta (8.5) | 0.14% | — | Tftpd32 SEAI | 13/1/2026 | 17/6/2026 | Tftpd32 SE 4.60 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious executables that will be run with system-level permissions. | |
| Analizada | Media (5.1) | 0.43% | — | Xlightftpd Xlight FTP Server | 15/12/2025 | 17/6/2026 | Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program' configuration that allows attackers to crash the application. Attackers can trigger the vulnerability by inserting 294 characters into the program execution configuration, causing a denial of service condition. | |
| Analizada | Media (6.5) | 0.33% | — | Hfiref0x Lightftp | 1/12/2025 | 17/6/2026 | A buffer overflow in the g_cfg.MaxUsers component of LightFTP v2.0 allows attackers to cause a Denial of Service (DoS) via a crafted input. | |
| Aplazada | Alta (8.7) | 0.29% | — | TftpsyncAI | 30/10/2025 | 17/6/2026 | A Path Traversal vulnerability in the tftpsync/add and tftpsync/delete scripts allows a remote attacker on an adjacent network to write or delete files on the filesystem with the privileges of the unprivileged wwwrun user. Although the endpoint is unauthenticated, access is restricted to a list of allowed IP addresses. | |
| Aplazada | Baja (2.3) | 0.32% | — | Phjounin Tftpd64AI | 12/2/2025 | 17/6/2026 | A vulnerability was found in phjounin TFTPD64 4.64. It has been declared as problematic. This vulnerability affects unknown code of the component DNS Handler. The manipulation leads to denial of service. The attack needs to be done within the local network. The complexity of an attack is rather high. The exploitation… | |
| Aplazada | Alta (7.5) | 0.68% | — | Msoulier TftpyAI | 29/4/2024 | 17/6/2026 | Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote attacker to cause a denial of service via the parse function in the TftpPacketFactory class. | |
| Modificada | Alta (7.5) | 4.2% | — | Xlightftpd Xlight FTP Server | 19/1/2024 | 17/6/2026 | A vulnerability classified as problematic was found in Xlightftpd Xlight FTP Server 1.1. This vulnerability affects unknown code of the component Login. The manipulation of the argument user leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.… | |
| Modificada | Alta (8.8) | 2.0% | — | Genesys Tftp Server | 10/5/2023 | 17/6/2026 | An issue was found in Genesys CIC Polycom phone provisioning TFTP Server all version allows a remote attacker to execute arbitrary code via the login crednetials to the TFTP server configuration page. | |
| Modificada | Alta (7.8) | 0.20% | — | Tftpd64 Project Tftpd64 | 17/2/2023 | 17/6/2026 | A vulnerability was found in phjounin TFTPD64-SE 4.64 and classified as critical. This issue affects some unknown processing of the file tftpd64_svc.exe. The manipulation leads to unquoted search path. An attack has to be approached locally. The complexity of an attack is rather high. The exploitation is known to be… | |
| Modificada | Alta (7.5) | 0.52% | — | Hfiref0x Lightftp | 21/1/2023 | 17/6/2026 | A race condition in LightFTP through 2.2 allows an attacker to achieve path traversal via a malformed FTP request. A handler thread can use an overwritten context->FileName. | |
| Modificada | Alta (8.1) | 2.2% | — | Xlightftpd Xlight FTP | 23/5/2022 | 17/6/2026 | Xlight FTP v3.9.3.2 was discovered to contain a stack-based buffer overflow which allows attackers to leak sensitive information via crafted code. |