ipswitch records
109 published records for vendor ipswitch.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 6 · 5.5%
- Pre-auth RCE
- 29
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer9
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-134 Use of Externally-Controlled Format String3
The weakness classes this vendor ships most often: where to look.
CWEAll records
109 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
60This week | CVE-2004-0297Weaponized | Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Server 8.03 allows remoteipswitch · imail | Critical10.0 | — | 68.1% | Nov 23, 2004 |
58Plan | CVE-2005-1256No exploit | Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before ipswitch · imail | Critical10.0 | — | 58.9% | May 25, 2005 |
55Plan | CVE-2003-0772Proof of concept | Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly execute arbitrary codipswitch · ws ftp server | High7.5 | — | 84.9% | Sep 22, 2003 |
53Plan | CVE-2005-1255Proof of concept | Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions beipswitch · imail | Critical10.0 | — | 42.8% | May 25, 2005 |
52Plan | CVE-2006-4847Weaponized | Multiple buffer overflows in Ipswitch WS_FTP Server 5.05 before Hotfix 1 allow remote authenticated users to execute arbitrary code via longipswitch · ws ftp server | Medium6.5 | — | 85.3% | Sep 18, 2006 |
51Plan | CVE-2007-3925Weaponized | Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote authenticated users toipswitch · imail server · CWE-119 | Medium6.5 | — | 84.7% | Jul 20, 2007 |
48Plan | CVE-2006-4379Proof of concept | Stack-based buffer overflow in the SMTP Daemon in Ipswitch Collaboration 2006 Suite Premium and Standard Editions, IMail, IMail Plus, and IMipswitch · imail plus | High7.5 | — | 61.1% | Sep 8, 2006 |
48Plan | CVE-2011-4722Weaponized | Directory traversal vulnerability in the TFTP Server 1.0.0.24 in Ipswitch WhatsUp Gold allows remote attackers to read arbitrary files via aipswitch · tftp server · CWE-22 | High7.8 | — | 58.2% | Dec 27, 2014 |
47Plan | CVE-2007-3927Proof of concept | Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified ipswitch · imail server | Critical10.0 | — | 21.9% | Jul 20, 2007 |
45Plan | CVE-2004-1520Weaponized | Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a long IMAP DELETE commanipswitch · imail | Medium4.6 | — | 88.5% | Dec 31, 2004 |
45Plan | CVE-2006-5000No exploit | Multiple buffer overflows in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, have unknown impact and remote autipswitch · ws ftp server | Medium6.5 | — | 64.6% | Sep 26, 2006 |
45Plan | CVE-2008-3795Proof of concept | Buffer overflow in Ipswitch WS_FTP Home client allows remote FTP servers to have an unknown impact via a long "message response."ipswitch · ws ftp home · CWE-119 | Critical10.0 | — | 15.1% | Aug 27, 2008 |
44Plan | CVE-1999-1046Proof of concept | Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via ipswitch · imail | Critical10.0 | — | 14.8% | Mar 1, 1999 |
43Plan | CVE-2007-2795Proof of concept | Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) tipswitch · imail · CWE-119 | Critical9.0 | — | 24.5% | Jan 27, 2009 |
43Plan | CVE-2002-0777No exploit | Buffer overflow in the LDAP component of Ipswitch IMail 7.1 and earlier allows remote attackers to execute arbitrary code via a long "bind Dipswitch · imail | Critical10.0 | — | 10.3% | Aug 12, 2002 |
42Plan | CVE-1999-1551Proof of concept | Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commandipswitch · imail | Medium5.0 | — | 71.8% | Mar 2, 1999 |
41Plan | CVE-2008-3734Proof of concept | Format string vulnerability in Ipswitch WS_FTP Home 2007.0.0.2 and WS_FTP Professional 2007.1.0.0 allows remote FTP servers to cause a deniaipswitch · ws ftp home · CWE-134 | Critical9.3 | — | 13.9% | Aug 20, 2008 |
40Plan | CVE-2019-12144No exploit | An issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1.ipswitch · ws ftp server · CWE-22 | Critical9.8 | — | 2.9% | Jun 11, 2019 |
40Plan | CVE-2017-12639No exploit | Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspecipswitch · imail server · CWE-119 | Critical9.8 | — | 2.5% | Oct 2, 2017 |
40Plan | CVE-2017-12638No exploit | Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspecipswitch · imail server · CWE-119 | Critical9.8 | — | 2.5% | Oct 2, 2017 |
40Plan | CVE-2017-6195No exploit | Ipswitch MOVEit Transfer (formerly DMZ) allows pre-authentication blind SQL injection.ipswitch · moveit dmz · CWE-89 | Critical9.8 | — | 2.0% | May 18, 2017 |
40Plan | CVE-2019-18464No exploit | In Progress MOVEit Transfer 10.2 before 10.2.6 (2018.3), 11.0 before 11.0.4 (2019.0.4), and 11.1 before 11.1.3 (2019.1.3), multiple SQL Injeipswitch · moveit transfer · CWE-89 | Critical9.8 | — | 2.0% | Oct 31, 2019 |
39Monitor | CVE-2005-1939Proof of concept | Directory traversal vulnerability in Ipswitch WhatsUp Small Business 2004 allows remote attackers to read arbitrary files via ".." (dot dot)ipswitch · whatsup small business | Medium5.0 | — | 63.6% | Dec 31, 2005 |
39Monitor | CVE-2007-3823No exploit | The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending aipswitch · ws ftp | High7.8 | — | 25.2% | Jul 16, 2007 |
39Monitor | CVE-2007-1637No exploit | Multiple buffer overflows in the IMAILAPILib ActiveX control (IMailAPI.dll) in Ipswitch IMail Server before 2006.2 allow remote attackers toipswitch · imail | Critical9.3 | — | 5.6% | Mar 23, 2007 |
- CVE-2004-029760This week
Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Server 8.03 allows remote
CriticalCVSS 10.0WeaponizedEPSS 68%ipswitch · imailNov 23, 2004
- CVE-2005-125658Plan
Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before
CriticalCVSS 10.0No exploitEPSS 59%ipswitch · imailMay 25, 2005
- CVE-2003-077255Plan
Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly execute arbitrary cod
HighCVSS 7.5Proof of conceptEPSS 85%ipswitch · ws ftp serverSep 22, 2003
- CVE-2005-125553Plan
Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions be
CriticalCVSS 10.0Proof of conceptEPSS 43%ipswitch · imailMay 25, 2005
- CVE-2006-484752Plan
Multiple buffer overflows in Ipswitch WS_FTP Server 5.05 before Hotfix 1 allow remote authenticated users to execute arbitrary code via long
MediumCVSS 6.5WeaponizedEPSS 85%ipswitch · ws ftp serverSep 18, 2006
- CVE-2007-392551Plan
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote authenticated users to
MediumCVSS 6.5WeaponizedEPSS 85%ipswitch · imail serverJul 20, 2007
- CVE-2006-437948Plan
Stack-based buffer overflow in the SMTP Daemon in Ipswitch Collaboration 2006 Suite Premium and Standard Editions, IMail, IMail Plus, and IM
HighCVSS 7.5Proof of conceptEPSS 61%ipswitch · imail plusSep 8, 2006
- CVE-2011-472248Plan
Directory traversal vulnerability in the TFTP Server 1.0.0.24 in Ipswitch WhatsUp Gold allows remote attackers to read arbitrary files via a
HighCVSS 7.8WeaponizedEPSS 58%ipswitch · tftp serverDec 27, 2014
- CVE-2007-392747Plan
Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified
CriticalCVSS 10.0Proof of conceptEPSS 22%ipswitch · imail serverJul 20, 2007
- CVE-2004-152045Plan
Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a long IMAP DELETE comman
MediumCVSS 4.6WeaponizedEPSS 89%ipswitch · imailDec 31, 2004
- CVE-2006-500045Plan
Multiple buffer overflows in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, have unknown impact and remote aut
MediumCVSS 6.5No exploitEPSS 65%ipswitch · ws ftp serverSep 26, 2006
- CVE-2008-379545Plan
Buffer overflow in Ipswitch WS_FTP Home client allows remote FTP servers to have an unknown impact via a long "message response."
CriticalCVSS 10.0Proof of conceptEPSS 15%ipswitch · ws ftp homeAug 27, 2008
- CVE-1999-104644Plan
Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via
CriticalCVSS 10.0Proof of conceptEPSS 15%ipswitch · imailMar 1, 1999
- CVE-2007-279543Plan
Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) t
CriticalCVSS 9.0Proof of conceptEPSS 24%ipswitch · imailJan 27, 2009
- CVE-2002-077743Plan
Buffer overflow in the LDAP component of Ipswitch IMail 7.1 and earlier allows remote attackers to execute arbitrary code via a long "bind D
CriticalCVSS 10.0No exploitEPSS 10%ipswitch · imailAug 12, 2002
- CVE-1999-155142Plan
Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary command
MediumCVSS 5.0Proof of conceptEPSS 72%ipswitch · imailMar 2, 1999
- CVE-2008-373441Plan
Format string vulnerability in Ipswitch WS_FTP Home 2007.0.0.2 and WS_FTP Professional 2007.1.0.0 allows remote FTP servers to cause a denia
CriticalCVSS 9.3Proof of conceptEPSS 14%ipswitch · ws ftp homeAug 20, 2008
- CVE-2019-1214440Plan
An issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1.
CriticalCVSS 9.8No exploitEPSS 3%ipswitch · ws ftp serverJun 11, 2019
- CVE-2017-1263940Plan
Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspec
CriticalCVSS 9.8No exploitEPSS 3%ipswitch · imail serverOct 2, 2017
- CVE-2017-1263840Plan
Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspec
CriticalCVSS 9.8No exploitEPSS 3%ipswitch · imail serverOct 2, 2017
- CVE-2017-619540Plan
Ipswitch MOVEit Transfer (formerly DMZ) allows pre-authentication blind SQL injection.
CriticalCVSS 9.8No exploitEPSS 2%ipswitch · moveit dmzMay 18, 2017
- CVE-2019-1846440Plan
In Progress MOVEit Transfer 10.2 before 10.2.6 (2018.3), 11.0 before 11.0.4 (2019.0.4), and 11.1 before 11.1.3 (2019.1.3), multiple SQL Inje
CriticalCVSS 9.8No exploitEPSS 2%ipswitch · moveit transferOct 31, 2019
- CVE-2005-193939Monitor
Directory traversal vulnerability in Ipswitch WhatsUp Small Business 2004 allows remote attackers to read arbitrary files via ".." (dot dot)
MediumCVSS 5.0Proof of conceptEPSS 64%ipswitch · whatsup small businessDec 31, 2005
- CVE-2007-382339Monitor
The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a
HighCVSS 7.8No exploitEPSS 25%ipswitch · ws ftpJul 16, 2007
- CVE-2007-163739Monitor
Multiple buffer overflows in the IMAILAPILib ActiveX control (IMailAPI.dll) in Ipswitch IMail Server before 2006.2 allow remote attackers to
CriticalCVSS 9.3No exploitEPSS 6%ipswitch · imailMar 23, 2007