argosoft records
26 published records for vendor argosoft.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-203 Observable Discrepancy1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
26 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2005-0519No exploit | ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) fileargosoft · ftp server | Critical10.0 | — | 3.8% | Feb 18, 2005 |
41Plan | CVE-2005-0520No exploit | ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE COPY command, a difargosoft · ftp server | Critical10.0 | — | 3.7% | Feb 23, 2005 |
37Monitor | CVE-2004-2673No exploit | Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly eargosoft · ftp server | Critical9.0 | — | 4.8% | Dec 31, 2004 |
35Monitor | CVE-2020-23824No exploit | ArGo Soft Mail Server 1.8.8.9 is affected by Cross Site Request Forgery (CSRF) for perform remote arbitrary code execution.argosoft · mail server · CWE-352 | High8.8 | — | 1.2% | Sep 11, 2020 |
31Monitor | CVE-2005-0696No exploit | Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DELE command.argosoft · ftp server | High7.5 | — | 4.7% | Mar 8, 2005 |
31Monitor | CVE-2001-1043No exploit | ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to targosoft · ftp server · CWE-59 | High7.5 | — | 3.3% | Jul 1, 2001 |
31Monitor | CVE-2000-1194No exploit | Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to argosoft · ftp server | High7.5 | — | 3.0% | Aug 31, 2001 |
31Monitor | CVE-2005-1283No exploit | Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1) read arbitrary fileargosoft · argosoft mail server | High7.5 | — | 1.7% | Apr 22, 2005 |
30Monitor | CVE-2005-1284No exploit | The addnew script in Argosoft Mail Server Pro 1.8.7.6 allows remote attackers to create arbitrary accounts, even if "Allow Creation of Accouargosoft · argosoft mail server | High7.5 | — | 1.5% | May 2, 2005 |
30Monitor | CVE-2004-2672No exploit | Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors.argosoft · ftp server | High7.5 | — | 1.4% | Dec 31, 2004 |
30Monitor | CVE-2004-1429No exploit | ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote attargosoft · ftp server | High7.5 | — | 1.3% | Dec 31, 2004 |
28Monitor | CVE-2004-2675Proof of concept | ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a lonargosoft · ftp server | Medium6.8 | — | 3.3% | Dec 31, 2004 |
28Monitor | CVE-2004-2674No exploit | Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbiargosoft · ftp server | Medium6.8 | — | 1.7% | Dec 31, 2004 |
27Monitor | CVE-2006-2170No exploit | Buffer overflow in ArgoSoft FTP Server 1.4.3.6 allows remote attackers to execute arbitrary code via Unicode in the RNTO command, as demonstargosoft · ftp server | Medium6.4 | — | 5.3% | May 4, 2006 |
23Monitor | CVE-2002-1004Proof of concept | Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to readargosoft · argosoft mail server | Medium5.0 | — | 8.3% | Oct 4, 2002 |
22Monitor | CVE-2017-15223Proof of concept | Denial-of-service vulnerability in ArGoSoft Mini Mail Server 1.0.0.2 and earlier allows remote attackers to waste CPU resources (memory consargosoft · mini mail server · CWE-835 | Medium5.3 | — | 4.5% | Oct 24, 2017 |
21Monitor | CVE-2004-1428No exploit | ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remargosoft · ftp server · CWE-203 | Medium5.0 | — | 2.8% | Dec 31, 2004 |
21Monitor | CVE-2006-0928No exploit | The POP3 Server in ArGoSoft Mail Server Pro 1.8 allows remote attackers to obtain sensitive information via the _DUMP command, which revealsargosoft · argosoft mail server | Medium5.0 | — | 2.1% | Feb 28, 2006 |
21Monitor | CVE-2002-1005No exploit | ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to theargosoft · argosoft mail server | Medium5.0 | — | 2.0% | Oct 4, 2002 |
21Monitor | CVE-2001-1142Proof of concept | ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain priviargosoft · ftp server | Medium5.0 | — | 2.0% | Jul 12, 2001 |
19Monitor | CVE-2005-0367No exploit | Multiple directory traversal vulnerabilities in ArGoSoft Mail Server 1.8.7.3 allow remote authenticated users to read, delete, or upload arbargosoft · argosoft mail server | Medium4.6 | — | 1.9% | Feb 9, 2005 |
18Monitor | CVE-2006-0978No exploit | Multiple cross-site scripting (XSS) vulnerabilities in the View Headers (aka viewheaders) functionality in ArGoSoft Mail Server Pro 1.8.8.5 argosoft · argosoft mail server | Medium4.3 | — | 2.2% | Mar 3, 2006 |
17Monitor | CVE-2005-1282No exploit | Multiple cross-site scripting (XSS) vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote attackers to inject arbitrary web scripargosoft · argosoft mail server | Medium4.3 | — | 1.2% | May 2, 2005 |
17Monitor | CVE-2002-1893No exploit | Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML argosoft · argosoft mail server | Medium4.3 | — | 1.2% | Dec 31, 2002 |
16Monitor | CVE-2006-0930No exploit | Directory traversal vulnerability in Webmail in ArGoSoft Mail Server Pro 1.8 allows remote authenticated users to read arbitrary files via aargosoft · argosoft mail server | Medium4.0 | — | 1.4% | Feb 28, 2006 |
- CVE-2005-051941Plan
ArGoSoft FTP Server before 1.4.2.7 allows remote attackers to read arbitrary files by uploading a ZIP file containing a shortcut (.LNK) file
CriticalCVSS 10.0No exploitEPSS 4%argosoft · ftp serverFeb 18, 2005
- CVE-2005-052041Plan
ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE COPY command, a dif
CriticalCVSS 10.0No exploitEPSS 4%argosoft · ftp serverFeb 23, 2005
- CVE-2004-267337Monitor
Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly e
CriticalCVSS 9.0No exploitEPSS 5%argosoft · ftp serverDec 31, 2004
- CVE-2020-2382435Monitor
ArGo Soft Mail Server 1.8.8.9 is affected by Cross Site Request Forgery (CSRF) for perform remote arbitrary code execution.
HighCVSS 8.8No exploitEPSS 1%argosoft · mail serverSep 11, 2020
- CVE-2005-069631Monitor
Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DELE command.
HighCVSS 7.5No exploitEPSS 5%argosoft · ftp serverMar 8, 2005
- CVE-2001-104331Monitor
ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to t
HighCVSS 7.5No exploitEPSS 3%argosoft · ftp serverJul 1, 2001
- CVE-2000-119431Monitor
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to
HighCVSS 7.5No exploitEPSS 3%argosoft · ftp serverAug 31, 2001
- CVE-2005-128331Monitor
Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1) read arbitrary file
HighCVSS 7.5No exploitEPSS 2%argosoft · argosoft mail serverApr 22, 2005
- CVE-2005-128430Monitor
The addnew script in Argosoft Mail Server Pro 1.8.7.6 allows remote attackers to create arbitrary accounts, even if "Allow Creation of Accou
HighCVSS 7.5No exploitEPSS 2%argosoft · argosoft mail serverMay 2, 2005
- CVE-2004-267230Monitor
Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors.
HighCVSS 7.5No exploitEPSS 1%argosoft · ftp serverDec 31, 2004
- CVE-2004-142930Monitor
ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote att
HighCVSS 7.5No exploitEPSS 1%argosoft · ftp serverDec 31, 2004
- CVE-2004-267528Monitor
ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a lon
MediumCVSS 6.8Proof of conceptEPSS 3%argosoft · ftp serverDec 31, 2004
- CVE-2004-267428Monitor
Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbi
MediumCVSS 6.8No exploitEPSS 2%argosoft · ftp serverDec 31, 2004
- CVE-2006-217027Monitor
Buffer overflow in ArgoSoft FTP Server 1.4.3.6 allows remote attackers to execute arbitrary code via Unicode in the RNTO command, as demonst
MediumCVSS 6.4No exploitEPSS 5%argosoft · ftp serverMay 4, 2006
- CVE-2002-100423Monitor
Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read
MediumCVSS 5.0Proof of conceptEPSS 8%argosoft · argosoft mail serverOct 4, 2002
- CVE-2017-1522322Monitor
Denial-of-service vulnerability in ArGoSoft Mini Mail Server 1.0.0.2 and earlier allows remote attackers to waste CPU resources (memory cons
MediumCVSS 5.3Proof of conceptEPSS 5%argosoft · mini mail serverOct 24, 2017
- CVE-2004-142821Monitor
ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows rem
MediumCVSS 5.0No exploitEPSS 3%argosoft · ftp serverDec 31, 2004
- CVE-2006-092821Monitor
The POP3 Server in ArGoSoft Mail Server Pro 1.8 allows remote attackers to obtain sensitive information via the _DUMP command, which reveals
MediumCVSS 5.0No exploitEPSS 2%argosoft · argosoft mail serverFeb 28, 2006
- CVE-2002-100521Monitor
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the
MediumCVSS 5.0No exploitEPSS 2%argosoft · argosoft mail serverOct 4, 2002
- CVE-2001-114221Monitor
ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privi
MediumCVSS 5.0Proof of conceptEPSS 2%argosoft · ftp serverJul 12, 2001
- CVE-2005-036719Monitor
Multiple directory traversal vulnerabilities in ArGoSoft Mail Server 1.8.7.3 allow remote authenticated users to read, delete, or upload arb
MediumCVSS 4.6No exploitEPSS 2%argosoft · argosoft mail serverFeb 9, 2005
- CVE-2006-097818Monitor
Multiple cross-site scripting (XSS) vulnerabilities in the View Headers (aka viewheaders) functionality in ArGoSoft Mail Server Pro 1.8.8.5
MediumCVSS 4.3No exploitEPSS 2%argosoft · argosoft mail serverMar 3, 2006
- CVE-2005-128217Monitor
Multiple cross-site scripting (XSS) vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote attackers to inject arbitrary web scrip
MediumCVSS 4.3No exploitEPSS 1%argosoft · argosoft mail serverMay 2, 2005
- CVE-2002-189317Monitor
Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML
MediumCVSS 4.3No exploitEPSS 1%argosoft · argosoft mail serverDec 31, 2002
- CVE-2006-093016Monitor
Directory traversal vulnerability in Webmail in ArGoSoft Mail Server Pro 1.8 allows remote authenticated users to read arbitrary files via a
MediumCVSS 4.0No exploitEPSS 1%argosoft · argosoft mail serverFeb 28, 2006