ftp records
4 published records for vendor ftp.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-1999-0082No exploit | CWD ~root command in ftpd allows root access.ftp · ftp | Critical10.0 | — | 8.3% | Nov 11, 1988 |
27Monitor | CVE-1999-0201No exploit | A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.ftp · ftp | Medium6.4 | — | 6.2% | Jan 1, 1997 |
25Monitor | CVE-1999-0351No exploit | FTP PASV "Pizza Thief" denial of service and unauthorized data access.ftp · ftp pasv | Medium6.4 | — | 1.6% | Feb 1, 1999 |
17Monitor | CVE-2007-6232Proof of concept | Cross-site scripting (XSS) vulnerability in index.php in FTP Admin 0.1.0 allows remote attackers to inject arbitrary web script or HTML via hp · hp-ux · CWE-79 | Medium4.3 | — | 1.6% | Dec 4, 2007 |
- CVE-1999-008242Plan
CWD ~root command in ftpd allows root access.
CriticalCVSS 10.0No exploitEPSS 8%ftp · ftpNov 11, 1988
- CVE-1999-020127Monitor
A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.
MediumCVSS 6.4No exploitEPSS 6%ftp · ftpJan 1, 1997
- CVE-1999-035125Monitor
FTP PASV "Pizza Thief" denial of service and unauthorized data access.
MediumCVSS 6.4No exploitEPSS 2%ftp · ftp pasvFeb 1, 1999
- CVE-2007-623217Monitor
Cross-site scripting (XSS) vulnerability in index.php in FTP Admin 0.1.0 allows remote attackers to inject arbitrary web script or HTML via
MediumCVSS 4.3Proof of conceptEPSS 2%hp · hp-uxDec 4, 2007