Vulnerabilities > Globalscape

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2024-1190 Improper Resource Shutdown or Release vulnerability in Globalscape Cuteftp 9.3.0.3
A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic.
local
low complexity
globalscape CWE-404
5.5
2023-06-22 CVE-2023-2989 Out-of-bounds Read vulnerability in Globalscape EFT Server 6.2.31.2
Fortra Globalscape EFT versions before 8.1.0.16 suffer from an out of bounds memory read in their administration server, which can allow an attacker to crash the service or bypass authentication if successfully exploited
network
low complexity
globalscape CWE-125
critical
9.1
2023-06-22 CVE-2023-2990 Uncontrolled Recursion vulnerability in Globalscape EFT Server 6.2.31.2
Fortra Globalscape EFT versions before 8.1.0.16 suffer from a denial of service vulnerability, where a compressed message that decompresses to itself can cause infinite recursion and crash the service
network
low complexity
globalscape CWE-674
7.5
2023-06-22 CVE-2023-2991 Unspecified vulnerability in Globalscape EFT Server
Fortra Globalscape EFT's administration server suffers from an information disclosure vulnerability where the serial number of the harddrive that Globalscape is installed on can be remotely determined via a "trial extension request" message
network
low complexity
globalscape
5.3
2009-09-30 CVE-2009-3483 Buffer Errors vulnerability in Globalscape Cuteftp 8.3.3/8.3.3.0054
Heap-based buffer overflow in the Create New Site feature in GlobalSCAPE CuteFTP Professional, Home, and Lite 8.3.3 and 8.3.3.0054 allows user-assisted remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a site list containing an entry with a long label.
network
globalscape CWE-119
critical
9.3
2008-06-19 CVE-2008-2779 Path Traversal vulnerability in Globalscape Cuteftp 8.2.0
Directory traversal vulnerability in GlobalSCAPE CuteFTP Home 8.2.0 Build 02.26.2008.4 and CuteFTP Pro 8.2.0 Build 04.01.2008.1 allows remote FTP servers to create or overwrite arbitrary files via ..\ (dot dot backslash) sequences in responses to LIST commands, a related issue to CVE-2002-1345.
network
globalscape CWE-22
critical
9.3
2006-04-11 CVE-2006-1693 Remote Denial of Service vulnerability in GlobalSCAPE Secure FTP Server
Unspecified vulnerability in GlobalSCAPE Secure FTP Server before 3.1.4 Build 01.10.2006 allows attackers to cause a denial of service (application crash) via a "custom command" with a long argument.
network
low complexity
globalscape
5.0
2005-05-03 CVE-2005-1415 Remote Buffer Overflow vulnerability in GlobalSCAPE Secure FTP Server 3.0/3.0.2
Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a long FTP command.
network
low complexity
globalscape
critical
10.0
2005-01-10 CVE-2004-1136 Denial-Of-Service vulnerability in Globalscape Cuteftp 6.0
Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of service (application crash) via large replies to FTP commands.
network
low complexity
globalscape
5.0
2004-12-31 CVE-2004-2366 Remote Buffer Overflow vulnerability in Globalscape Secure FTP Server 2.0Build20040311
Buffer overflow in GlobalSCAPE Secure FTP Server 2.0 B03.11.2004.2 allows remote attackers to cause a denial of service (crash) via a SITE command with a long argument.
network
low complexity
globalscape
5.0