- EPSS 12.74%
- Published 07.07.2000 04:00:00
- Last modified 03.04.2025 01:03:51
FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), which allows remote attackers to cause a denial of s...
- EPSS 1.35%
- Published 22.08.1999 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR.
- EPSS 48.33%
- Published 09.02.1999 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
CVE-1999-0017
- EPSS 0.55%
- Published 10.12.1997 05:00:00
- Last modified 03.04.2025 01:03:51
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
CVE-1999-0955
- EPSS 1.23%
- Published 23.09.1997 04:00:00
- Last modified 03.04.2025 01:03:51
Race condition in wu-ftpd and BSDI ftpd allows remote attackers to gain root access via the SITE EXEC command.
- EPSS 0.92%
- Published 04.07.1997 04:00:00
- Last modified 03.04.2025 01:03:51
wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary f...
CVE-1999-0156
- EPSS 0.08%
- Published 01.07.1997 04:00:00
- Last modified 03.04.2025 01:03:51
wu-ftpd FTP daemon allows any user and password combination.
- EPSS 0.79%
- Published 01.07.1997 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in wu-ftp from PASV command causes a core dump.
- EPSS 0.66%
- Published 11.01.1997 05:00:00
- Last modified 03.04.2025 01:03:51
wu-ftp allows files to be overwritten via the rnfr command.
- EPSS 0.66%
- Published 16.10.1996 04:00:00
- Last modified 03.04.2025 01:03:51
PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password.