Vulnerability index

Browse CVEs

96 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Moveit Transfer CRITICAL 9.8
CVE-2019-18464

In Progress MOVEit Transfer 10.2 before 10.2.6 (2018.3), 11.0 before 11.0.4 (2019.0.4), and 11.1 before 11.1.3 (2019.1.3), multiple SQL Injection vul…

Fix: 10.2.6 / 11.0.4+
Fix from $2,300 2019-10-31
Moveit Transfer CRITICAL 9.8
CVE-2019-18465

In Progress MOVEit Transfer 11.1 before 11.1.3, a vulnerability has been found that could allow an attacker to sign in without full credentials via t…

Fix: 11.1.3+
Fix from $2,300 2019-10-31
Moveit Transfer CRITICAL 9.4
CVE-2019-16383EPSS 5%

MOVEit.DMZ.WebApi.dll in Progress MOVEit Transfer 2018 SP2 before 10.2.4, 2019 before 11.0.2, and 2019.1 before 11.1.1 allows an unauthenticated atta…

Fix: 10.2.4 / 11.0.2+
Fix from $2,300 2019-09-24
Ws Ftp Server CRITICAL 9.8
CVE-2019-12144

An issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1. Attackers have the ability to abuse a path traversa…

Fix: 8.6.1+
Fix from $2,300 2019-06-11
Ws Ftp Server CRITICAL 9.1
CVE-2019-12146

A Directory Traversal issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1. Attackers have the ability to ab…

Fix: 8.6.1+
Fix from $2,300 2019-06-11
Ws Ftp Server HIGH 7.5
CVE-2019-12145

A Directory Traversal issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1. An attacker can supply a string …

Fix: 8.6.1+
Fix from $1,950 2019-06-11
Moveit MEDIUM 6.1
CVE-2018-6545

Ipswitch MoveIt v8.1 is vulnerable to a Stored Cross-Site Scripting (XSS) vulnerability, as demonstrated by human.aspx. Attackers can leverage this v…

No fix yet
Fix from $1,600 2018-02-02
Ws Ftp HIGH 7.8
CVE-2017-16513

Ipswitch WS_FTP Professional before 12.6.0.3 has buffer overflows in the local search field and the backup locations field, aka WSCLT-1729.

Fix: 12.6.0.3+
Fix from $1,950 2017-11-03
Imail Server CRITICAL 9.8
CVE-2017-12638

Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspecified vec…

Fix: after 12.5.5
Fix from $2,300 2017-10-03
Imail Server CRITICAL 9.8
CVE-2017-12639

Stack based buffer overflow in Ipswitch IMail server up to and including 12.5.5 allows remote attackers to execute arbitrary code via unspecified vec…

Fix: after 12.5.5
Fix from $2,300 2017-10-03
Moveit Dmz CRITICAL 9.8
CVE-2017-6195

Ipswitch MOVEit Transfer (formerly DMZ) allows pre-authentication blind SQL injection. The fixed versions are MOVEit Transfer 2017 9.0.0.201, MOVEit …

Fix: after 8.1
Fix from $2,300 2017-05-18
Moveit Dmz MEDIUM 5.4
CVE-2015-7676

Ipswitch MOVEit File Transfer (formerly DMZ) 8.1 and earlier, when configured to support file view on download, allows remote authenticated users to …

Fix: after 8.1
Fix from $1,600 2016-04-15
Moveit Dmz MEDIUM 5.3
CVE-2015-7680

Ipswitch MOVEit DMZ before 8.2 provides different error messages for authentication attempts depending on whether the user account exists, which allo…

Fix: after 8.1
Fix from $1,600 2016-02-10
Moveit Mobile MEDIUM 6.1
CVE-2015-7679

Cross-site scripting (XSS) vulnerability in Ipswitch MOVEit Mobile before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via th…

Fix: after 1.2.0.962
Fix from $1,600 2016-02-10
Moveit Mobile HIGH 8.8
CVE-2015-7678

Multiple cross-site request forgery (CSRF) vulnerabilities in Ipswitch MOVEit Mobile 1.2.0.962 and earlier allow remote attackers to hijack the authe…

Fix: after 1.2.0.962
Fix from $1,950 2016-02-10
Moveit Dmz MEDIUM 6.5
CVE-2015-7675

The "Send as attachment" feature in Ipswitch MOVEit DMZ before 8.2 and MOVEit Mobile before 1.2.2 allow remote authenticated users to bypass authoriz…

Fix: after 8.1
Fix from $1,600 2016-02-10
Tftp Server HIGH 7.8
CVE-2011-4722EPSS 58%

Directory traversal vulnerability in the TFTP Server 1.0.0.24 in Ipswitch WhatsUp Gold allows remote attackers to read arbitrary files via a .. (dot …

No fix yet
Fix from $1,950 2014-12-28
Imail MEDIUM 6.8
CVE-2011-1430

The STARTTLS implementation in the server in Ipswitch IMail 11.03 and earlier does not properly restrict I/O buffering, which allows man-in-the-middl…

Fix: after 11.03
Fix from $1,600 2011-03-16
Imail HIGH 9.0
CVE-2007-2795EPSS 24%

Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) the authen…

Fix: after 2006.2
Fix from $1,950 2009-01-27
Ws Ftp MEDIUM 5.0
CVE-2008-5692EPSS 13%

Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via…

Fix: after 6.1
Fix from $1,600 2008-12-19
Ws Ftp MEDIUM 5.0
CVE-2008-5693

Ipswitch WS_FTP Server Manager 6.1.0.0 and earlier, and possibly other Ipswitch products, might allow remote attackers to read the contents of custom…

Fix: after 6.1
Fix from $1,600 2008-12-19
Ws Ftp Home HIGH 10.0
CVE-2008-3795EPSS 15%

Buffer overflow in Ipswitch WS_FTP Home client allows remote FTP servers to have an unknown impact via a long "message response."

No fix yet
Fix from $1,950 2008-08-27
Ws Ftp Home HIGH 9.3
CVE-2008-3734EPSS 14%

Format string vulnerability in Ipswitch WS_FTP Home 2007.0.0.2 and WS_FTP Professional 2007.1.0.0 allows remote FTP servers to cause a denial of serv…

No fix yet
Fix from $1,950 2008-08-20
Instant Messaging MEDIUM 5.0
CVE-2008-0944EPSS 12%

Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote attackers to cause a denial of service (NULL dereference and application crash) via…

No fix yet
Fix from $1,600 2008-02-25
Ws Ftp MEDIUM 5.0
CVE-2008-0608EPSS 6%

The Logging Server (ftplogsrv.exe) 7.9.14.0 and earlier in IPSwitch WS_FTP 6.1 allows remote attackers to cause a denial of service (loss of responsi…

Mitigation only
Fix from $1,600 2008-02-06
Imail Client HIGH 7.5
CVE-2007-4345

Buffer overflow in IMail Client 9.22, as shipped with IPSwitch IMail Server 2006.22, allows remote attackers to execute arbitrary code via a long bou…

Mitigation only
Fix from $1,950 2007-10-31
Imail HIGH 7.5
CVE-2007-5094

Heap-based buffer overflow in iaspam.dll in the SMTP Server in Ipswitch IMail Server 8.01 through 8.11 allows remote attackers to execute arbitrary c…

No fix yet
Fix from $1,950 2007-09-26
Imserver MEDIUM 5.0
CVE-2007-3959EPSS 6%

The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS)…

Fix: after 2.07
Fix from $1,600 2007-07-24
Imail Server HIGH 10.0
CVE-2007-3927EPSS 22%

Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified vectors i…

Fix: after 2006.2
Fix from $1,950 2007-07-21
Imail Server HIGH 7.8
CVE-2007-3926

Ipswitch IMail Server 2006 before 2006.21 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving an "o…

Mitigation only
Fix from $1,950 2007-07-21