VendorsEvolvable Corporationshambala_serverall versions
Vulnerabilities

Evolvable Corporation Shambala Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2000-0954
Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise the server.
Published 2000-11-29 · Modified
10.0EPSS 0.019
CVE-2001-0758
Directory traversal vulnerability in Shambala 4.5 allows remote attackers to escape the FTP root directory via "CWD ..." command.
Published 2001-10-12 · Modified
7.5EPSS 0.042
CVE-2002-0876
Web server for Shambala 4.5 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request.
Published 2002-08-31 · Modified
5.01 PoCEPSS 0.072
CVE-2000-0953
Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.
Published 2001-01-22 · Modified
5.01 PoCEPSS 0.031
CVE-2002-0877
Directory traversal vulnerability in the FTP server for Shambala 4.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) LIST (ls) or (2) GET commands.
Published 2002-08-31 · Modified
5.0EPSS 0.020