VYPR

Crob Ftp Server

by Crob

CVEs (6)

  • CVE-2006-6558Dec 14, 2006
    risk 0.04cvss epss 0.07

    Crob FTP Server 3.6.1 b.263 allows remote attackers to cause a denial of service via a long series of "?A" sequences in the (1) LIST and possibly (2) NLST command.

  • CVE-2004-2309Dec 31, 2004
    risk 0.03cvss epss 0.00

    Directory traversal vulnerability in Crob FTP Server 3.5.1 allows local users to browse outside the FTP root via multiple ../ (dot dot slash) in the DIR command.

  • CVE-2004-0282Nov 23, 2004
    risk 0.03cvss epss 0.04

    Crob FTP daemon 3.5.2 allows remote attackers to cause a denial of service (crash) by repeatedly connecting to and disconnecting from the server.

  • CVE-2003-1207Feb 1, 2004
    risk 0.03cvss epss 0.05

    Crob FTP Server 3.5.1 allows remote authenticated users to cause a denial of service (crash) via a dir command with a large number of "." characters followed by a "/*" string.

  • CVE-2003-1205Aug 6, 2003
    risk 0.00cvss epss 0.01

    Crob FTP Server 2.60.1 allows remote authenticated users to cause a denial of service (crash) by renaming a file to the "con" MS-DOS device name.

  • CVE-2003-1206Jun 3, 2003
    risk 0.00cvss epss 0.01

    Format string vulnerability in Crob FTP Server 2.60.1 allows remote attackers to cause a denial of service (crash) via "%s" or "%n" sequences in (1) the username during login, or other FTP commands such as (2) dir.