psftp records
4 published records for vendor psftp.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation1
- CWE-287 Improper Authentication1
- CWE-416 Use After Free1
- CWE-610 Externally Controlled Reference to a Resource in Another Sphere1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2017-15271Proof of concept | A use-after-free issue could be triggered remotely in the SFTP component of PSFTPd 10.0.4 Build 729.psftp · psftpd · CWE-416 | Medium5.9 | — | 8.7% | Nov 15, 2017 |
23Monitor | CVE-2017-15270Proof of concept | The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file.psftp · psftpd · CWE-20 | Medium5.3 | — | 7.0% | Nov 15, 2017 |
21Monitor | CVE-2017-15272No exploit | The PSFTPd 10.0.4 Build 729 server stores its configuration inside PSFTPd.dat.psftp · psftpd · CWE-287 | Medium5.3 | — | 0.6% | Nov 15, 2017 |
17Monitor | CVE-2017-15269No exploit | The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default.psftp · psftpd · CWE-610 | Medium4.3 | — | 1.5% | Nov 15, 2017 |
- CVE-2017-1527126Monitor
A use-after-free issue could be triggered remotely in the SFTP component of PSFTPd 10.0.4 Build 729.
MediumCVSS 5.9Proof of conceptEPSS 9%psftp · psftpdNov 15, 2017
- CVE-2017-1527023Monitor
The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file.
MediumCVSS 5.3Proof of conceptEPSS 7%psftp · psftpdNov 15, 2017
- CVE-2017-1527221Monitor
The PSFTPd 10.0.4 Build 729 server stores its configuration inside PSFTPd.dat.
MediumCVSS 5.3No exploitEPSS 1%psftp · psftpdNov 15, 2017
- CVE-2017-1526917Monitor
The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default.
MediumCVSS 4.3No exploitEPSS 2%psftp · psftpdNov 15, 2017