RSS   Vulnerabilities for 'Powerftp'   RSS

2003-04-02
 
CVE-2002-1522

 

 
Buffer overflow in PowerFTP FTP server 2.24, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long USER argument.

 
2002-05-29
 
CVE-2002-0264

 

 
PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.

 
2001-11-28
 
CVE-2001-0934

 

 
Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.

 
 
CVE-2001-0933

 

 
Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".

 
 
CVE-2001-0932

CWE-Other
 

 
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.

 
 
CVE-2001-0931

CWE-Other
 

 
Directory traversal vulnerability in Cooolsoft PowerFTP Server 2.03 allows attackers to list or read arbitrary files and directories via a .. (dot dot) in (1) LS or (2) GET.

 

 >>> Vendor: Cooolsoft 2 Products
Powerftp
Personal ftp server


Copyright 2024, cxsecurity.com

 

Back to Top