RSS   Vulnerabilities for 'Home ftp server'   RSS

2008-03-24
 
CVE-2008-1478

CWE-20
 

 
Home FTP Server 1.4.5.89 allows remote attackers to cause a denial of service (crash) by opening a FTP passive mode connection, then closing the original FTP connection. NOTE: some of these details are obtained from third party information.

 
2006-01-22
 
CVE-2006-0356

CWE-Other
 

 
Ari Pikivirta Home Ftp Server 1.0.7 allows remote attackers to cause an unspecified denial of service via a long USER command combined with a long PASS command.

 
2005-08-30
 
CVE-2005-2727

 

 
Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home directory, which allows remote authenticated users to obtain sensitive information by obtaining ftpmembers.lst and ftpsettings.lst.

 
 
CVE-2005-2726

 

 
Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via "C:\" (Windows drive letter) sequences in commands such as (1) LIST or (2) RETR.

 


Copyright 2024, cxsecurity.com

 

Back to Top