Vulnerabilities > EFS Software > High

DATE CVE VULNERABILITY TITLE RISK
2007-01-16 CVE-2006-6933 Information Disclosure vulnerability in EFS Software Easy Chat Server 2.1
Easy Chat Server 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download certain files via direct requests to files such as (1) ServerKey.pem and (2) AcceptIP.txt.
network
low complexity
efs-software
7.8
2006-08-01 CVE-2006-3952 Remote Buffer Overflow vulnerability in EFS Software EFS FTP Server 2.0
Stack-based buffer overflow in EFS Software Easy File Sharing FTP Server 2.0 allows remote attackers to execute arbitrary code via a long argument to the PASS command.
network
low complexity
efs-software
7.5
2006-03-12 CVE-2006-1159 Input Validation vulnerability in EFS Software EFS web Server 3.2
Format string vulnerability in Easy File Sharing (EFS) Web Server 3.2 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via format string specifiers in the query string argument in an HTTP GET request.
network
low complexity
efs-software
7.8