RSS   Vulnerabilities for 'Reflection ftp client'   RSS

2015-02-06
 
CVE-2014-0605

CWE-22
 

 
Directory traversal vulnerability in the rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to execute arbitrary code via unspecified vectors to the SaveSettings method.

 
 
CVE-2014-0604

CWE-22
 

 
Directory traversal vulnerability in the rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to execute arbitrary code via unspecified vectors to the StartLog method.

 
 
CVE-2014-0603

CWE-94
 

 
The rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to cause a denial of service (memory corruption) and execute arbitrary code via vectors related to the (1) GetGlobalSettings or (2) GetSiteProperties3 methods, which triggers a dereference of an arbitrary memory address. NOTE: this issue was MERGED with CVE-2014-0606 because it is the same type of vulnerability, affecting the same set of versions, and discovered by the same researcher.

 
2015-01-27
 
CVE-2014-5211

CWE-119
 

 
Stack-based buffer overflow in the Attachmate Reflection FTP Client before 14.1.433 allows remote FTP servers to execute arbitrary code via a large PWD response.

 

 >>> Vendor: Attachmate 15 Products
Reflection for secure it
Reflection for the web
Reflection
Reflection 2008
Reflection 2008r1
Reflection 2008r2
Reflection 2011r1
Reflection for hp
Reflection for ibm
Reflection for regis graphics server
Reflection for unix and openvms
Reflection x
Verastream host integrator
Verastream process designer
Reflection ftp client


Copyright 2017, cxsecurity.com

 

Back to Top