
CVE-2004-1848
https://notcve.org/view.php?id=CVE-2004-1848
31 Dec 2004 — Ipswitch WS_FTP Server 4.0.2 allows remote attackers to cause a denial of service (disk consumption) and bypass file size restrictions via a REST command with a large size argument, followed by a STOR of a smaller file. • http://marc.info/?l=bugtraq&m=108006717731989&w=2 • CWE-399: Resource Management Errors •

CVE-2004-1135 – Ipswitch WS_FTP Server 5.03 - MKD Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2004-1135
08 Dec 2004 — Multiple buffer overflows in WS_FTP Server 5.03 2004.10.14 allow remote attackers to cause a denial of service (service crash) via long (1) SITE, (2) XMKD, (3) MKD, and (4) RNFR commands. • https://www.exploit-db.com/exploits/664 •

CVE-2004-1884
https://notcve.org/view.php?id=CVE-2004-1884
23 Mar 2004 — Ipswitch WS_FTP Server 4.0.2 has a backdoor XXSESS_MGRYY username with a default password, which allows remote attackers to gain access. • http://marc.info/?l=bugtraq&m=108006581418116&w=2 •

CVE-2003-0772 – Ipswitch WS_FTP Server 3.4/4.0 - FTP Command Buffer Overrun
https://notcve.org/view.php?id=CVE-2003-0772
12 Sep 2003 — Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via long (1) APPE (append) or (2) STAT (status) arguments. Múltiples desboradamientos de búfer en WS_FTP 3 y 4 permite a usuarios remotos autenticados causar una denegación de servicio y posiblemente ejecutar código arbitrario mediaten argumentos APPEND o STAT (estado) largos. • https://www.exploit-db.com/exploits/23100 •

CVE-2002-1851
https://notcve.org/view.php?id=CVE-2002-1851
31 Dec 2002 — Buffer overflow in WS_FTP Pro 7.5 allows remote attackers to execute code on a client system via unknown attack vectors. • http://www.iss.net/security_center/static/10185.php •

CVE-1999-1078
https://notcve.org/view.php?id=CVE-1999-1078
29 Jul 1999 — WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges. • http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9907&L=ntbugtraq&D=0&P=10370&F=P •

CVE-1999-0362
https://notcve.org/view.php?id=CVE-1999-0362
02 Feb 1999 — WS_FTP server remote denial of service through cwd command. • http://www.eeye.com/html/Research/Advisories/AD02021999.html •

CVE-1999-1171 – Ipswitch IMail 5.0 / Ipswitch WS_FTP Server 1.0.1/1.0.2 - Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-1171
02 Feb 1999 — IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920. • https://www.exploit-db.com/exploits/19167 •

CVE-1999-1170 – Ipswitch IMail 5.0 / Ipswitch WS_FTP Server 1.0.1/1.0.2 - Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-1170
02 Jan 1999 — IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920. • https://www.exploit-db.com/exploits/19167 •