Vulnerabilities > Efssoft

DATE CVE VULNERABILITY TITLE RISK
2017-03-16 CVE-2017-6510 Path Traversal vulnerability in Efssoft Easy File Sharing FTP Server
Easy File Sharing FTP Server version 3.6 is vulnerable to a directory traversal vulnerability which allows an attacker to list and download any file from any folder outside the FTP root Directory.
network
low complexity
efssoft CWE-22
5.0
2015-01-02 CVE-2014-9439 Cross-site Scripting vulnerability in Efssoft Easy File Sharing web Server 6.8
Cross-site scripting (XSS) vulnerability in Easy File Sharing Web Server 6.8 allows remote attackers to inject arbitrary web script or HTML via the username field during registration, which is not properly handled by forum.ghp.
network
efssoft CWE-79
4.3
2014-08-06 CVE-2014-5178 Cross-Site Scripting vulnerability in Efssoft Easy File Sharing web Server 6.8
Multiple cross-site scripting (XSS) vulnerabilities in Easy File Sharing (EFS) Web Server 6.8 allow remote authenticated users to inject arbitrary web script or HTML via the content parameter when (1) creating a topic or (2) posting an answer.
network
efssoft CWE-79
4.3
2014-05-20 CVE-2014-3791 Buffer Errors vulnerability in Efssoft Easy File Sharing web Server 6.8
Stack-based buffer overflow in Easy File Sharing (EFS) Web Server 6.8 allows remote attackers to execute arbitrary code via a long string in a cookie UserID parameter to vfolder.ghp.
network
low complexity
efssoft CWE-119
critical
10.0