CVE-2023-45690
- EPSS 1.48%
- Veröffentlicht 16.10.2023 17:15:10
- Zuletzt bearbeitet 21.11.2024 08:27:13
Default file permissions on South River Technologies' Titan MFT and Titan SFTP servers on Linux allows a user that's authentication to the OS to read sensitive files on the filesystem
CVE-2022-44215
- EPSS 0.75%
- Veröffentlicht 22.08.2023 19:16:29
- Zuletzt bearbeitet 21.11.2024 07:27:45
There is an open redirect vulnerability in Titan FTP server 19.0 and below. Users are redirected to any target URL.
CVE-2023-22629
- EPSS 12.32%
- Veröffentlicht 14.02.2023 20:15:16
- Zuletzt bearbeitet 20.03.2025 21:15:17
An issue was discovered in TitanFTP through 1.94.1205. The move-file function has a path traversal vulnerability in the newPath parameter. An authenticated attacker can upload any file and then move it anywhere on the server's filesystem.
CVE-2019-10009
- EPSS 11.47%
- Veröffentlicht 03.06.2019 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:18:12
A Directory Traversal issue was discovered in the Web GUI in Titan FTP Server 2019 Build 3505. When an authenticated user attempts to preview an uploaded file (through PreviewHandler.ashx) by using a \..\..\ technique, arbitrary files can be loaded i...
- EPSS 4.85%
- Veröffentlicht 29.04.2014 10:37:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to copy an arbitrary user's home folder via a Move action with a .. (dot dot) in the src parameter.
- EPSS 4.79%
- Veröffentlicht 29.04.2014 10:37:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to list all usernames via a Go action with a .. (dot dot) in the search-bar value.
- EPSS 4.67%
- Veröffentlicht 29.04.2014 10:37:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to obtain the property information of an arbitrary home folder via a Properties action with a .. (dot dot) in the src parameter...
CVE-2010-2425
- EPSS 1.22%
- Veröffentlicht 24.06.2010 12:17:45
- Zuletzt bearbeitet 16.06.2026 23:20:43
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read or delete arbitrary files via "..//" sequences in a COMB command.
- EPSS 12.26%
- Veröffentlicht 24.06.2010 12:17:45
- Zuletzt bearbeitet 16.06.2026 23:20:43
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read arbitrary files, determine file size, via "..//" sequences in the xcrc com...
- EPSS 44.58%
- Veröffentlicht 06.02.2009 11:30:00
- Zuletzt bearbeitet 16.06.2026 23:01:33
Titan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO command.