Show filters
142 Total Results
Displaying 131-140 of 142
Sort by:
Attacker Value
Unknown

CVE-2005-1282

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote attackers to inject arbitrary web script or HTML via (1) the src parameter in an IMG tag, (2) User settings, or (3) Address book input boxes in the webmail interface.
0
Attacker Value
Unknown

CVE-2005-1283

Disclosure Date: April 22, 2005 (last updated February 22, 2025)
Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1) read arbitrary files via the UIDL parameter to the msg script or (2) copy or move the user's .eml file to arbitrary locations via the delete script, a different vulnerability than CVE-2005-0367.
0
Attacker Value
Unknown

CVE-2005-0367

Disclosure Date: February 09, 2005 (last updated February 22, 2025)
Multiple directory traversal vulnerabilities in ArGoSoft Mail Server 1.8.7.3 allow remote authenticated users to read, delete, or upload arbitrary files via a .. (dot dot) in (1) the filename of an e-mail attachment, (2) the _msgatt.rec file, (3) and the /msg, /delete, /folderadd, and /folderdelete operations for the Folder parameter.
0
Attacker Value
Unknown

CVE-2004-0325

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (CPU consumption) via "//../" arguments to (1) mkd, (2) xmkd, (3) dele, (4) size, (5) retr, (6) stor, (7) appe, (8) rnfr, (9) rnto, (10) rmd, or (11) xrmd, as demonstrated using "//../qwerty".
0
Attacker Value
Unknown

CVE-2004-0252

Disclosure Date: November 23, 2004 (last updated February 22, 2025)
TYPSoft FTP Server 1.10 allows remote attackers to cause a denial of service (CPU consumption) via an empty USER name.
0
Attacker Value
Unknown

CVE-2002-1893

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message.
0
Attacker Value
Unknown

CVE-2002-1354

Disclosure Date: December 18, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in TYPSoft FTP Server 0.99.8 allows local users to list the contents of arbitrary directories via a ... (dot dot dot) in the cd/CWD command.
0
Attacker Value
Unknown

CVE-2002-1005

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop.
0
Attacker Value
Unknown

CVE-2002-1004

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.
0
Attacker Value
Unknown

CVE-2002-0558

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in TYPSoft FTP server 0.97.1 and earlier allows a remote authenticated user (possibly anonymous) to list arbitrary directories via a .. in a LIST (ls) command ending in wildcard *.* characters.
0