VendorsPhilippe Jounintftpd32all versions
Vulnerabilities

Philippe Jounin Tftpd32

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2006-0328
Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service via format string specifiers in a filename in a (1) GET or (2) SEND request.
Published 2006-01-21 · Modified
5.01 PoCEPSS 0.076
CVE-2006-6141
Buffer overflow in Tftpd32 3.01 allows remote attackers to cause a denial of service via a long GET or PUT request, which is not properly handled when the request is displayed in the title of the gauge window.
Published 2006-11-28 · Modified
5.0EPSS 0.038
CVE-2013-6809
Format string vulnerability in the client in Tftpd32 before 4.50 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in the Remote File field.
Published 2013-12-13 · Modified
5.0EPSS 0.029
CVE-2005-4882
tftpd in Philippe Jounin Tftpd32 2.74 and earlier, as used in Wyse Simple Imager (WSI) and other products, allows remote attackers to cause a denial of service (daemon crash) via a long filename in a TFTP read (aka RRQ or get) request, a different vulnerability than CVE-2002-2226.
Published 2009-11-20 · Modified
5.0EPSS 0.018
CVE-2005-4883
Race condition in Philippe Jounin Tftpd32 before 2.80 allows remote attackers to cause a denial of service (daemon crash) via invalid "connect frames."
Published 2009-11-20 · Modified
4.3EPSS 0.007