Skip to main content

Vendor/product archive

washington_university / wu-ftpd CVEs

Beta · best-effort

13 CVEs tagged to washington_university / wu-ftpd5 Critical, 4 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2005-0256

Published May 2, 2005

The wu_fnmatch function in wu_fnmatch.c in wu-ftpd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a lar…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0148

Published Apr 15, 2004

wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home dir…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0185

Published Mar 15, 2004

Buffer overflow in the skey_challenge function in ftpd.c for wu-ftp daemon (wu-ftpd) 2.6.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2003-1327

Published Dec 31, 2003

Buffer overflow in the SockPrintf function in wu-ftpd 2.6.2 and earlier, when compiled with MAIL_ADMIN option enabled on a system that supports very long pathnames, might allow re…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2003-1329

Published Dec 31, 2003

ftpd.c in wu-ftpd 2.6.2, when running on "operating systems that only allow one non-connected socket bound to the same local address," does not close failed connections, which all…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2003-0853

Published Nov 17, 2003

An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0854

Published Nov 17, 2003

ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0935

Published Nov 28, 2001

Vulnerability in wu-ftpd 2.6.0, and possibly earlier versions, which is unrelated to the ftpglob bug described in CVE-2001-0550.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0187

Published Mar 26, 2001

Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers to execute arbitrary commands via a malformed argument that…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0574

Published Jul 7, 2000

FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called b…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-13 of 13 CVEsPage 1 of 1