Sami FTP Server
CVEs (8)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-19596 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2021 | Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username. | ||
| CVE-2019-25619 | Hig | 0.55 | 8.4 | 0.00 | Mar 22, 2026 | FTP Shell Server 6.83 contains a buffer overflow vulnerability in the 'Account name to ban' field that allows local attackers to execute arbitrary code by supplying a crafted string. Attackers can inject shellcode through the account name parameter in the Manage FTP Accounts… | ||
| CVE-2023-40045 | Hig | 0.54 | 8.3 | 0.01 | Sep 27, 2023 | In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a reflected cross-site scripting (XSS) vulnerability exists in WS_FTP Server's Ad Hoc Transfer module. An attacker could leverage this vulnerability to target WS_FTP Server users with a specialized payload which results… | ||
| CVE-2020-19595 | Hig | 0.49 | 7.5 | 0.01 | Apr 5, 2021 | Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username. | ||
| CVE-2004-2082 | 0.04 | — | 0.07 | Feb 13, 2004 | The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters. | |||
| CVE-2008-6534 | 0.03 | — | 0.04 | Mar 26, 2009 | Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument. | |||
| CVE-2012-4729 | 0.00 | — | 0.02 | Oct 26, 2012 | Wing FTP Server before 4.1.1 allows remote authenticated users to cause a denial of service (daemon crash) via two zip commands. | |||
| CVE-2006-1383 | 0.00 | — | 0.01 | Mar 24, 2006 | Directory traversal vulnerability in Baby FTP Server (BabyFTP) 1.24 allows remote authenticated users to determine existence of files outside the intended document root via unspecified manipulations, which generate different error messages depending on whether a file exists or… |
- risk 0.64cvss 9.8epss 0.01
Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username.
- risk 0.55cvss 8.4epss 0.00
FTP Shell Server 6.83 contains a buffer overflow vulnerability in the 'Account name to ban' field that allows local attackers to execute arbitrary code by supplying a crafted string. Attackers can inject shellcode through the account name parameter in the Manage FTP Accounts…
- risk 0.54cvss 8.3epss 0.01
In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a reflected cross-site scripting (XSS) vulnerability exists in WS_FTP Server's Ad Hoc Transfer module. An attacker could leverage this vulnerability to target WS_FTP Server users with a specialized payload which results…
- risk 0.49cvss 7.5epss 0.01
Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.
- CVE-2004-2082Feb 13, 2004risk 0.04cvss —epss 0.07
The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters.
- CVE-2008-6534Mar 26, 2009risk 0.03cvss —epss 0.04
Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument.
- CVE-2012-4729Oct 26, 2012risk 0.00cvss —epss 0.02
Wing FTP Server before 4.1.1 allows remote authenticated users to cause a denial of service (daemon crash) via two zip commands.
- CVE-2006-1383Mar 24, 2006risk 0.00cvss —epss 0.01
Directory traversal vulnerability in Baby FTP Server (BabyFTP) 1.24 allows remote authenticated users to determine existence of files outside the intended document root via unspecified manipulations, which generate different error messages depending on whether a file exists or…