Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown

CVE-2014-1215

Disclosure Date: March 20, 2018 (last updated November 26, 2024)
Multiple buffer overflows in Core FTP Server before 1.2 build 508 allow local users to gain privileges via vectors related to reading data from config.dat and Windows Registry.
0
Attacker Value
Unknown

CVE-2014-4643

Disclosure Date: June 25, 2014 (last updated October 05, 2023)
Multiple heap-based buffer overflows in the client in Core FTP LE 2.2 build 1798 allow remote FTP servers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string in a reply to a (1) USER, (2) PASS, (3) PASV, (4) SYST, (5) PWD, or (6) CDUP command.
0
Attacker Value
Unknown

CVE-2014-1442

Disclosure Date: May 02, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in Core FTP Server 1.2 before build 515 allows remote authenticated users to determine the existence of arbitrary files via a /../ sequence in an XCRC command.
0
Attacker Value
Unknown

CVE-2014-1443

Disclosure Date: May 02, 2014 (last updated October 05, 2023)
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2014-1441

Disclosure Date: May 02, 2014 (last updated October 05, 2023)
Core FTP Server 1.2 before build 515 allows remote attackers to cause a denial of service (reachable assertion and crash) via an AUTH SSL command with malformed data, as demonstrated by pressing the enter key twice.
0
Attacker Value
Unknown

CVE-2013-3930

Disclosure Date: April 04, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a CWD command reply.
0
Attacker Value
Unknown

CVE-2009-3484

Disclosure Date: September 30, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in Core FTP 2.1 build 1612 allows user-assisted remote attackers to execute arbitrary code via a long hostname in an FTP server entry in a site backup file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-2519

Disclosure Date: June 03, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in Core FTP client 2.1 Build 1565 allows remote FTP servers to create or overwrite arbitrary files via .. (dot dot) sequences in responses to LIST commands, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.
0