Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
coreftp coreftp vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-1441
Core FTP Server 1.2 before build 515 allows remote malicious users to cause a denial of service (reachable assertion and crash) via an AUTH SSL command with malformed data, as demonstrated by pressing the enter key twice.
Coreftp Core Ftp 1.2
NA
CVE-2014-1442
Directory traversal vulnerability in Core FTP Server 1.2 before build 515 allows remote authenticated users to determine the existence of arbitrary files via a /../ sequence in an XCRC command.
Coreftp Core Ftp 1.2
NA
CVE-2014-1443
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
Coreftp Core Ftp 1.2
7.5
CVSSv3
CVE-2018-20658
The server in Core FTP 2.0 build 653 on 32-bit platforms allows remote malicious users to cause a denial of service (daemon crash) via a crafted XRMD command.
Coreftp Core Ftp 2.0
1 EDB exploit
5.3
CVSSv3
CVE-2019-9648
An issue exists in the SFTP Server component in Core FTP 2.0 Build 674. A directory traversal vulnerability exists using the SIZE command along with a \..\..\ substring, allowing an malicious user to enumerate file existence based on the returned information.
Coreftp Core Ftp 2.0
1 EDB exploit
5.3
CVSSv3
CVE-2019-9649
An issue exists in the SFTP Server component in Core FTP 2.0 Build 674. Using the MDTM FTP command, a remote attacker can use a directory traversal technique (..\..\) to browse outside the root directory to determine the existence of a file on the operating system, and its last m...
Coreftp Core Ftp 2.0
1 EDB exploit
7.5
CVSSv3
CVE-2020-19595
Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.
Coreftp Core Ftp 2.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2