Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
university of washington vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2008-5006
smtp.c in the c-client library in University of Washington IMAP Toolkit 2007b allows remote SMTP servers to cause a denial of service (NULL pointer dereference and application crash) by responding to the QUIT command with a close of the TCP connection instead of the expected 221 ...
University Of Washington Imap Toolkit 2007b
2.1
CVSSv2
CVE-2002-1782
The default configuration of University of Washington IMAP daemon (wu-imapd), when running on a system that does not allow shell access, allows a local user with a valid IMAP account to read arbitrary files as that user.
University Of Washington Uw-imap 2001.0a
5
CVSSv2
CVE-2005-0256
The wu_fnmatch function in wu_fnmatch.c in wu-ftpd 2.6.1 and 2.6.2 allows remote malicious users to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir command.
Washington University Wu-ftpd 2.6.1
Washington University Wu-ftpd 2.6.2
1 EDB exploit
10
CVSSv2
CVE-1999-0005
Arbitrary command execution via IMAP buffer overflow in authenticate command.
University Of Washington Imap 10.234
Netscape Messaging Server 3.55
1 EDB exploit
5
CVSSv2
CVE-1999-0004
MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
University Of Washington Pine 4.02
Hp Dtmail
Sco Unixware 7.0
10
CVSSv2
CVE-1999-0042
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
University Of Washington Pop 3
University Of Washington Imap 4
Ibm Aix 4.2.1
Redhat Linux 2.0
Caldera Openlinux 1.0
Bsdi Bsd Os 3.0
Bsdi Bsd Os 2.1
Redhat Linux 4.0
1 EDB exploit
4.6
CVSSv2
CVE-1999-1187
Pine before version 3.94 allows local users to gain privileges via a symlink attack on a lockfile that is created when a user receives new mail.
University Of Washington Pine
Freebsd Freebsd 2.1.0
Slackware Slackware Linux 3.0
7.5
CVSSv2
CVE-2001-0550
wu-ftpd 2.6.1 allows remote malicious users to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).
David Madore Ftpd-bsd 0.3.3
Washington University Wu-ftpd 2.5.0
Washington University Wu-ftpd 2.6.0
Washington University Wu-ftpd 2.6.1
David Madore Ftpd-bsd 0.3.2
2 EDB exploits
1 Github repository
10
CVSSv2
CVE-1999-0080
Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command.
Washington University Wu-ftpd 2.4
7.8
CVSSv2
CVE-2003-1329
ftpd.c in wu-ftpd 2.6.2, when running on "operating systems that only allow one non-connected socket bound to the same local address," does not close failed connections, which allows remote malicious users to cause a denial of service.
Washington University Wu-ftpd 2.6.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
CVE-2023-52162
CVE-2024-23670
CVE-2024-5404
man-in-the-middle
CVE-2024-5214
CVE-2024-4358
CVE-2024-20696
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »