Перейти к содержимому
Noroxi

Записи melag

6 опубликованных записей вендора melag.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 22

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

6 записей
  • CVE-2021-41635
    36Наблюдать

    When installed as Windows service MELAG FTP Server 2.2.0.4 is run as SYSTEM user, which grants remote attackers to abuse misconfigurations o

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    melag · ftp server24 июн. 2022 г.

  • CVE-2021-41638
    31Наблюдать

    The authentication checks of the MELAG FTP Server in version 2.2.0.4 are incomplete, which allows a remote attacker to access local files on

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    melag · ftp server24 июн. 2022 г.

  • CVE-2021-41637
    28Наблюдать

    Weak access control permissions in MELAG FTP Server 2.2.0.4 allow the "Everyone" group to read the local FTP configuration file, which inclu

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    melag · ftp server24 июн. 2022 г.

  • CVE-2021-41636
    26Наблюдать

    MELAG FTP Server 2.2.0.4 allows an attacker to use the CWD command to break out of the FTP servers root directory and operate on the entire

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    melag · ftp server24 июн. 2022 г.

  • CVE-2021-41639
    22Наблюдать

    MELAG FTP Server 2.2.0.4 stores unencrpyted passwords of FTP users in a local configuration file.

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    melag · ftp server24 июн. 2022 г.

  • CVE-2021-41634
    21Наблюдать

    A user enumeration vulnerability in MELAG FTP Server 2.2.0.4 allows an attacker to identify valid FTP usernames.

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    melag · ftp server24 июн. 2022 г.