VYPR

TitanFTP

by South River Technologies

CVEs (2)

  • CVE-2023-22629Feb 14, 2023
    risk 0.08cvss epss 0.12

    An issue was discovered in TitanFTP through 1.94.1205. The move-file function has a path traversal vulnerability in the newPath parameter. An authenticated attacker can upload any file and then move it anywhere on the server's filesystem.

  • CVE-2023-27745Jun 2, 2023
    risk 0.00cvss epss 0.00

    An issue in South River Technologies TitanFTP Before v2.0.1.2102 allows attackers with low-level privileges to perform Administrative actions by sending requests to the user server.