Psftp / Psftpd
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-15272 | The PSFTPd 10.0.4 Build 729 server stores its configuration inside PSFTPd.dat. This file is a Microsoft Access Database and can be extracted. The application s… | MEDIUM | 5.3 | Nov 15, 2017 |
| CVE-2017-15271 | A use-after-free issue could be triggered remotely in the SFTP component of PSFTPd 10.0.4 Build 729. This issue could be triggered prior to authentication. The… | MEDIUM | 5.9 | Nov 15, 2017 |
| CVE-2017-15270 | The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file. This can be used by attackers to h… | MEDIUM | 5.3 | Nov 15, 2017 |
| CVE-2017-15269 | The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default. These can be performed using "nmap -b" and allow performing scans via the FTP… | MEDIUM | 4.3 | Nov 15, 2017 |
Showing 1 to 4 of 4 CVEs