WinFtp Server
by Wftpserver
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2006-6673 | 0.03 | — | 0.03 | Dec 21, 2006 | WinFtp Server 2.0.2 allows remote attackers to cause a denial of service (crash) via long (1) PASV, (2) LIST, (3) USER, (4) PORT, and possibly other commands. | |||
| CVE-2005-2634 | 0.00 | — | 0.05 | Aug 23, 2005 | Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request. | |||
| CVE-2004-2400 | 0.00 | — | 0.00 | Dec 31, 2004 | WinFTP Server 1.6 stores username and password credentials in plaintext in the data\user.wfd file, which allows local users to gain access to the credentials. |
- CVE-2006-6673Dec 21, 2006risk 0.03cvss —epss 0.03
WinFtp Server 2.0.2 allows remote attackers to cause a denial of service (crash) via long (1) PASV, (2) LIST, (3) USER, (4) PORT, and possibly other commands.
- CVE-2005-2634Aug 23, 2005risk 0.00cvss —epss 0.05
Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request.
- CVE-2004-2400Dec 31, 2004risk 0.00cvss —epss 0.00
WinFTP Server 1.6 stores username and password credentials in plaintext in the data\user.wfd file, which allows local users to gain access to the credentials.