📦

winftp_ftp_server

Vendor: wftpserver

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 12.93% Exploit Prob.
Latest CVE CVE-2009-0351 Jan 29

Security Vulnerability Index

Page 1 / 1
9.0 CVSS
CVE-2009-0351
Exploit Found

Stack-based buffer overflow in WFTPSRV.exe in WinFTP 2.3.0 allows remote authenticated users to execute arbitrary code via a long LIST argument beginning with an * (asterisk) character.

EPSS: 5.27%
3.5 CVSS
CVE-2008-5666
Exploit Found

WinFTP FTP Server 2.3.0, when passive (aka PASV) mode is used, allows remote authenticated users to cause a denial of service via a sequence of FTP sessions that include an invalid "NLST -1" command.

EPSS: 20.59%