Skip to main content

Vendor/product archive

argosoft / ftp_server CVEs

Beta · best-effort

13 CVEs tagged to argosoft / ftp_server3 Critical, 5 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2006-2170

Published May 4, 2006

Buffer overflow in ArgoSoft FTP Server 1.4.3.6 allows remote attackers to execute arbitrary code via Unicode in the RNTO command, as demonstrated by the Infigo FTPStress Fuzzer.

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0696

Published Mar 8, 2005

Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DELE command. NOTE: this issue was later reported to also aff…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0520

Published Feb 23, 2005

ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE COPY command, a different vulnerability than CVE-2005-0519.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2005-0519

Published Feb 18, 2005

ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file, using SITE UNZIP to extract the .LNK…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1428

Published Dec 31, 2004

ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remote attackers to determine valid userna…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1429

Published Dec 31, 2004

ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote attackers to guess passwords via a brute f…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-2672

Published Dec 31, 2004

Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-2673

Published Dec 31, 2004

Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a SITE ZI…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-2674

Published Dec 31, 2004

Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the S…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2675

Published Dec 31, 2004

ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a long password parameter, which causes the…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-1194

Published Aug 31, 2001

Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1142

Published Jul 12, 2001

ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1043

Published Jul 1, 2001

ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-13 of 13 CVEsPage 1 of 1