Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Provide Ftp Server CRITICAL 9.8
CVE-2020-11705

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. /ajax/ImportCertificate allows an attacker to load an arbitrary certificate in…

Fix: after 13.1
Fix from $2,300 2020-04-12
Provide Ftp Server CRITICAL 9.8
CVE-2020-11708

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. Privilege escalation can occur via the /ajax/SetUserInfo messages parameter be…

Fix: after 13.1
Fix from $2,300 2020-04-12
Provide Ftp Server HIGH 8.8
CVE-2020-11706

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. The Admin Interface allows CSRF for actions such as: Change any username and p…

Fix: after 13.1
Fix from $1,950 2020-04-12
Provide Ftp Server HIGH 8.8
CVE-2020-11707

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. It doesn't enforce permission over Windows Symlinks or Junctions. As a result,…

Fix: after 13.1
Fix from $1,950 2020-04-12
Provide Ftp Server HIGH 8.8
CVE-2020-11701

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. CSRF exists in the User Web Interface, as demonstrated by granting filesystem …

Fix: after 13.1
Fix from $1,950 2020-04-12
Provide Ftp Server HIGH 7.5
CVE-2020-11703

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. /ajax/GetInheritedProperties allows HTTP Response Splitting via the language p…

Fix: after 13.1
Fix from $1,950 2020-04-12
Provide Ftp Server MEDIUM 6.1
CVE-2020-11702

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. The User Web Interface has Multiple Stored and Reflected XSS issues. Collabora…

Fix: after 13.1
Fix from $1,600 2020-04-12
Provide Ftp Server MEDIUM 6.1
CVE-2020-11704

An issue was discovered in ProVide (formerly zFTPServer) through 13.1. The Admin Web Interface has Multiple Stored and Reflected XSS. GetInheritedPro…

Fix: after 13.1
Fix from $1,600 2020-04-12