Vulnerabilities > Argosoft > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2004-12-31 | CVE-2004-2674 | Multiple vulnerability in ArGoSoft FTP Server Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the SITE UNZIP argument. | 6.8 |
2002-12-31 | CVE-2002-1893 | HTML Injection vulnerability in Argosoft Mail Server 1.8.1.9 Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message. network argosoft | 4.3 |
2002-10-04 | CVE-2002-1005 | Denial of Service vulnerability in Argosoft Mail Server 1.8.1.5/1.8.1.6/1.8.1.7 ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop. | 5.0 |
2002-10-04 | CVE-2002-1004 | Directory Traversal vulnerability in Argosoft Mail Server 1.8.1.5 Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. | 5.0 |
2001-07-12 | CVE-2001-1142 | Weak Password Encryption vulnerability in Argosoft FTP Server 1.2.2.2 ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges. | 5.0 |