Show filters
33 Total Results
Displaying 21-30 of 33
Sort by:
Attacker Value
Unknown

CVE-2007-1404

Disclosure Date: March 10, 2007 (last updated October 04, 2023)
tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 allows remote attackers to cause a denial of service via a long UDP packet that is not properly handled in a recv_from call. NOTE: this issue might be related to CVE-2006-4948.
0
Attacker Value
Unknown

CVE-2006-4948

Disclosure Date: September 23, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a long file name. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2006-4781

Disclosure Date: September 14, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in FutureSoft TFTP Server Multithreaded (MT) 1.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code by sending a crafted packet to port 69/UDP, which triggers the overflow when constructing an absolute path name. NOTE: Some details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2006-1952

Disclosure Date: April 24, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in WinAgents TFTP Server for Windows 3.1 and earlier allows remote attackers to read arbitrary files via "..." (triple dot) sequences in a GET request.
0
Attacker Value
Unknown

CVE-2006-1951

Disclosure Date: April 24, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in SolarWinds TFTP Server 8.1 and earlier allows remote attackers to download arbitrary files via a crafted GET request including "....//" sequences, which are collapsed into "../" sequences by filtering.
0
Attacker Value
Unknown

CVE-2005-1813

Disclosure Date: June 01, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.
0
Attacker Value
Unknown

CVE-2005-1812

Disclosure Date: June 01, 2005 (last updated February 22, 2025)
Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to execute arbitrary code via a long (1) filename or (2) transfer mode string in a Read Request (RRQ) or Write Request (WRQ) packet.
0
Attacker Value
Unknown

CVE-2004-0286

Disclosure Date: November 23, 2004 (last updated February 22, 2025)
Buffer overflow in RobotFTP 1.0 and 2.0 beta 1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long username.
0
Attacker Value
Unknown

CVE-2002-1542

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP datagram, possibly triggering a buffer overflow.
0
Attacker Value
Unknown

CVE-2002-2237

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
tftp32 TFTP server 2.21 and earlier allows remote attackers to cause a denial of service via a GET request with a DOS device name such as com1 or aux.
0