frox records
3 published records for vendor frox.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2001-0936No exploit | Buffer overflow in Frox transparent FTP proxy 0.6.6 and earlier, with the local caching method selected, allows remote FTP servers to run arfrox · frox | High7.5 | — | 1.5% | Nov 30, 2001 |
30Monitor | CVE-2005-2808No exploit | frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blofrox · frox | High7.5 | — | 1.4% | Sep 7, 2005 |
28Monitor | CVE-2005-2807Proof of concept | frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to readfrox · frox | High7.2 | — | 0.9% | Sep 7, 2005 |
- CVE-2001-093630Monitor
Buffer overflow in Frox transparent FTP proxy 0.6.6 and earlier, with the local caching method selected, allows remote FTP servers to run ar
HighCVSS 7.5No exploitEPSS 2%frox · froxNov 30, 2001
- CVE-2005-280830Monitor
frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blo
HighCVSS 7.5No exploitEPSS 1%frox · froxSep 7, 2005
- CVE-2005-280728Monitor
frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read
HighCVSS 7.2Proof of conceptEPSS 1%frox · froxSep 7, 2005