Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
filezilla filezilla vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-6565
FileZilla Server prior to 0.9.22 allows remote malicious users to cause a denial of service (crash) via a wildcard argument to the (1) LIST or (2) NLST commands, which results in a NULL pointer dereference, a different set of vectors than CVE-2006-6564. NOTE: CVE analysis suggest...
Filezilla-project Filezilla Server
1 EDB exploit
NA
CVE-2005-0850
FileZilla FTP server prior to 0.9.6 allows remote malicious users to cause a denial of service via a request for a filename containing an MS-DOS device name such as CON, NUL, COM1, LPT1, and others.
Filezilla-project Filezilla Server
NA
CVE-2005-3589
Buffer overflow in FileZilla Server Terminal 0.9.4d may allow remote malicious users to cause a denial of service (terminal crash) via a long USER ftp command.
Filezilla Filezilla Server Terminal 0.9.4d
1 EDB exploit
6.5
CVSSv3
CVE-2022-29620
FileZilla v3.59.0 allows malicious users to obtain cleartext passwords of connected SSH or FTP servers via a memory dump.- NOTE: the vendor does not consider this a vulnerability
Filezilla-project Filezilla Client 3.59.0
7.8
CVSSv3
CVE-2019-5429
Untrusted search path in FileZilla prior to 3.41.0-rc1 allows an malicious user to gain privileges via a malicious 'fzsftp' binary in the user's home directory.
Filezilla-project Filezilla Client
Debian Debian Linux 9.0
Fedoraproject Fedora 28
7.8
CVSSv3
CVE-2016-15003
A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic. This vulnerability affects unknown code of the file C:\Program Files\FileZilla FTP Client\uninstall.exe of the component Installer. The manipulation leads to unquoted search path. The attac...
Filezilla-project Filezilla Client 3.17.0
5.9
CVSSv3
CVE-2024-31497
In PuTTY 0.68 up to and including 0.80 prior to 0.81, biased ECDSA nonce generation allows an malicious user to recover a user's NIST P-521 secret key via a quick attack in approximately 60 signatures. This is especially important in a scenario where an adversary is able to ...
Putty Putty
Filezilla-project Filezilla Client
Winscp Winscp
Tortoisegit Tortoisegit
Tigris Tortoisesvn
Fedoraproject Fedora 38
Fedoraproject Fedora 39
Fedoraproject Fedora 40
4 Github repositories
2 Articles
NA
CVE-2013-4207
Buffer overflow in sshbn.c in PuTTY prior to 0.63 allows remote SSH servers to cause a denial of service (crash) via an invalid DSA signature that is not properly handled during computation of a modular inverse and triggers the overflow during a division by zero by the bignum fun...
Putty Putty 0.57
Putty Putty 0.56
Putty Putty 0.55
Putty Putty 0.54
Putty Putty 0.53b
Simon Tatham Putty
Putty Putty 0.49
Putty Putty 0.48
Putty Putty 0.47
Putty Putty 0.46
Putty Putty 0.60
Putty Putty 0.58
Putty Putty 0.52
Putty Putty 0.50
Putty Putty 0.45
Putty Putty 0.61
Putty Putty 0.59
Simon Tatham Putty 0.53
Putty Putty 0.51
Putty Putty 2010-06-01
NA
CVE-2013-4208
The rsa_verify function in PuTTY prior to 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow local users to discover private RSA and DSA keys.
Putty Putty 0.54
Putty Putty 0.53b
Simon Tatham Putty 0.53
Putty Putty 0.52
Putty Putty 0.61
Simon Tatham Putty
Putty Putty 0.60
Putty Putty 0.59
Putty Putty 0.47
Putty Putty 0.46
Putty Putty 0.45
Putty Putty 0.57
Putty Putty 0.55
Putty Putty 0.51
Putty Putty 0.49
Putty Putty 0.58
Putty Putty 0.56
Putty Putty 0.50
Putty Putty 0.48
NA
CVE-2013-4206
Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY prior to 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing ...
Simon Tatham Putty 0.53
Putty Putty 0.52
Putty Putty 0.51
Putty Putty 0.50
Putty Putty 0.61
Putty Putty 0.60
Putty Putty 0.59
Putty Putty 0.58
Putty Putty 0.57
Putty Putty 0.45
Putty Putty 2010-06-01
Simon Tatham Putty
Putty Putty 0.55
Putty Putty 0.53b
Putty Putty 0.49
Putty Putty 0.47
Putty Putty 0.56
Putty Putty 0.54
Putty Putty 0.48
Putty Putty 0.46
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »