Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2008-7016

Disclosure Date: August 21, 2009 (last updated October 04, 2023)
tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks via unknown vectors, probably involving a crafted ftp:// link to a tnftpd server.
0
Attacker Value
Unknown

CVE-2004-1294

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The mget function in cmds.c for tnftp 20030825 allows remote FTP servers to overwrite arbitrary files via FTP responses containing file names with / (slash) characters.
0
Attacker Value
Unknown

CVE-2004-0794

Disclosure Date: October 20, 2004 (last updated February 22, 2025)
Multiple signal handler race conditions in lukemftpd (aka tnftpd before 20040810) allow remote authenticated attackers to cause a denial of service or execute arbitrary code.
0
Attacker Value
Unknown

CVE-2002-0768

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in lukemftp FTP client in SuSE 6.4 through 8.0, and possibly other operating systems, allows a malicious FTP server to execute arbitrary code via a long PASV command.
0
Attacker Value
Unknown

CVE-2002-0600

Disclosure Date: June 18, 2002 (last updated February 22, 2025)
Heap overflow in the KTH Kerberos 4 FTP client 4-1.1.1 allows remote malicious servers to execute arbitrary code on the client via a long response to a passive (PASV) mode request.
0