VendorsEtypeeservall versions
Vulnerabilities

Etype Eserv

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2008-4588
Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long argument to the ABOR command.
Published 2008-10-15 · Modified
10.01 PoCEPSS 0.068
CVE-2000-0523
Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.
Published 2001-01-22 · Modified
10.01 PoCEPSS 0.050
CVE-2000-0907
EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.
Published 2000-11-29 · Modified
7.5EPSS 0.020
CVE-2002-0222
Etype Eserv 2.97 allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.
Published 2002-05-03 · Modified
7.5EPSS 0.016
CVE-2006-2308
Directory traversal vulnerability in the IMAP service in EServ/3 3.25 allows remote authenticated users to read other user's email messages, create/rename arbitrary directories on the system, and delete empty directories via directory traversal sequences in the (1) CREATE, (2) SELECT, (3) DELETE, (4) RENAME, (5) COPY or (6) APPEND commands.
Published 2006-06-02 · Modified
5.5EPSS 0.016
CVE-1999-1509
Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL.
Published 2001-09-12 · Modified
5.01 PoCEPSS 0.083
CVE-2002-0112
Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.
Published 2002-03-15 · Modified
5.01 PoCEPSS 0.081
CVE-2003-0290
Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated.
Published 2003-05-14 · Modified
5.02 PoCEPSS 0.078
CVE-2003-1266
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
Published 2005-11-16 · Modified
5.04 PoCEPSS 0.039
CVE-2002-0221
Etype Eserv 2.97 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of PASV commands that consume ports 1024 through 5000, which prevents the server from accepting valid PASV.
Published 2002-05-03 · Modified
5.0EPSS 0.016
CVE-2006-2309
The HTTP service in EServ/3 3.25 allows remote attackers to obtain sensitive information via crafted HTTP requests containing dot, space, and slash characters, which reveals the source code of script files.
Published 2006-06-02 · Modified
4.0EPSS 0.016