4 results (0.010 seconds)

CVSS: 9.0EPSS: 3%CPEs: 1EXPL: 2

Stack-based buffer overflow in RaidenFTPD 2.4 build 3620 allows remote authenticated users to cause a denial of service (crash) or execute arbitrary code via long (1) CWD and (2) MLST commands. Desbordamiento de búfer basado en pila en RaidenFTPD v2.4 build 3620 permite a usuarios remotos autenticados provocar una denegación de servicio (caída de la aplicación) o ejecutar código de su elección mediante un comando (1) CWD o un comando (2) MLST. • https://www.exploit-db.com/exploits/6742 http://secunia.com/advisories/32216 http://www.securityfocus.com/bid/31741 http://www.vupen.com/english/advisories/2008/2804 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.8EPSS: 1%CPEs: 2EXPL: 0

Multiple unspecified vulnerabilities in IXceedCompression in XceddZipLib (RaidenFTPD.dll) in RaidenFTPD 2.4 allow remote attackers to cause a denial of service (crash) via unspecified vectors involving the (1) CalculateCrc, (2) Compress, and (3) Uncompress functions, which result in a NULL pointer dereference. Múltiples vulnerabilidades no especificadas en IXceedCompression en XceddZipLib (RaidenFTPD.dll) en RaidenFTPD 2.4 permite a atacantes remotos provocar denegación de servicio (caida) a través de vectores no especificados afectando a las funciones (1) CalculateCrc, (2) Compress, y (3) Uncompress, lo cual resulta en puntero NULL no referenciado. • http://securityreason.com/securityalert/2606 http://www.securityfocus.com/archive/1/466319/100/0/threaded http://www.securityfocus.com/bid/23570 https://exchange.xforce.ibmcloud.com/vulnerabilities/33776 •

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 1

Directory traversal vulnerability in RaidenFTPD before 2.4.2241 allows remote attackers to read arbitrary files via a "..\\" (dot dot backslash) in the urlget site command. • https://www.exploit-db.com/exploits/25486 http://forum.raidenftpd.com/showflat.php?Board=UBB13&Number=45685 http://marc.info/?l=bugtraq&m=111507556127582&w=2 http://secunia.com/advisories/15037 http://www.osvdb.org/15713 http://www.securityfocus.com/bid/13292 https://exchange.xforce.ibmcloud.com/vulnerabilities/20368 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 1

Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST. • https://www.exploit-db.com/exploits/20803 http://archives.neohapsis.com/archives/bugtraq/2001-04/0465.html https://exchange.xforce.ibmcloud.com/vulnerabilities/6455 •