CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3736  CVE-2001-0930  Candidate  Sendpage.pl allows remote attackers to execute arbitrary commands via a message containing shell metacharacters.  Modified (20050702)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:sendpage-message-command-execution(7609)  View
3737  CVE-2001-0931  Candidate  Directory traversal vulnerability in Cooolsoft PowerFTP Server 2.03 allows attackers to list or read arbitrary files and directories via a .. (dot dot) in (1) LS or (2) GET.  Proposed (20020131)  ACCEPT(3) Baker, Foat, Frech | NOOP(3) Armstrong, Cole, Wall    View
3738  CVE-2001-0932  Candidate  Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.  Proposed (20020131)  ACCEPT(2) Foat, Frech | NOOP(3) Armstrong, Cole, Wall    View
3739  CVE-2001-0933  Candidate  Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".  Proposed (20020131)  ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall  Frech> XF:powerftp-dot-directory-traversal(7615)  View
3740  CVE-2001-0934  Candidate  Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.  Proposed (20020131)  ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(4) Armstrong, Christey, Cole, Wall  Frech> (ACCEPT; Task 2353) | Christey> Rediscovered in: | BUGTRAQ:20020211 PowerFTP Personal FTP Server Multiple Vulnerabilities | http://marc.theaimsgroup.com/?l=bugtraq&m=101361745222207&w=2 | This rediscovery says the problem is in 2.10. | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:powerftp-pwd-path-disclosure(8182) | Christey> BID:4072 | URL:http://online.securityfocus.com/bid/4072  View

Page 748 of 20943, showing 5 records out of 104715 total, starting on record 3736, ending on 3740

Actions