VendorsJgaawarftpdall versions
Vulnerabilities

Jgaa WarFTPd

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2013-2278
Unspecified vulnerability in War FTP Daemon (warftpd) 1.82, when running as a Windows service, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to log messages and the "internal log handler to the Windows Event log."
Published 2014-04-01 · Modified
10.0EPSS 0.035
CVE-2000-0044
Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.
Published 2000-04-18 · Modified
10.0EPSS 0.031
CVE-1999-0256
Buffer overflow in War FTP allows remote execution of commands.
Published 1999-09-29 · Modified
7.52 PoCEPSS 0.729
CVE-2006-2171
Buffer overflow in WDM.exe in WarFTPD allows remote attackers to execute arbitrary code via unspecified arguments, as demonstrated by the Infigo FTPStress Fuzzer.
Published 2006-05-04 · Modified
6.4EPSS 0.046
CVE-2000-0131
Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
Published 2000-04-18 · Modified
5.01 PoCEPSS 0.076
CVE-1999-1003
War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.
Published 2000-02-04 · Modified
5.0EPSS 0.019
CVE-2006-5789
War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to cause a denial of service via a large number of "%s" format strings in (1) CWD, (2) CDUP, (3) DELE, (4) NLST, (5) LIST, (6) SIZE, and possibly other commands. NOTE: it is possible that vector 1 is an off-by-one variant or incomplete fix of CVE-2005-0312.
Published 2006-11-07 · Modified
4.01 PoCEPSS 0.029
CVE-2009-5141
Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated users to cause a denial of service (crash) via format string specifiers in a LIST command.
Published 2014-04-01 · Modified
4.01 PoCEPSS 0.027