Vulnerabilities > Maxum > Rumpus FTP

DATE CVE VULNERABILITY TITLE RISK
2020-02-10 CVE-2019-19668 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the File Types component of Web File Manager in Rumpus FTP 8.2.9.1 that allows an attacker to add or delete the file types that are used on the server via RAPR/TriggerServerFunction.html.
network
maxum CWE-352
4.3
2020-02-10 CVE-2019-19670 Unspecified vulnerability in Maxum Rumpus FTP 8.2.9.1
A HTTP Response Splitting vulnerability was identified in the Web Settings Component of Web File Manager in Rumpus FTP Server 8.2.9.1.
network
maxum
4.3
2020-02-10 CVE-2019-19669 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the Upload Center Forms Component of Web File Manager in Rumpus FTP 8.2.9.1.
network
maxum CWE-352
5.8
2020-02-10 CVE-2019-19667 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the Block Clients component of Web File Manager in Rumpus FTP 8.2.9.1 that could allow an attacker to whitelist or block any IP address via RAPR/BlockedClients.html.
network
maxum CWE-352
5.8
2020-02-10 CVE-2019-19666 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the Event Notices Settings of Web File Manager in Rumpus FTP 8.2.9.1.
network
maxum CWE-352
4.3
2020-02-10 CVE-2019-19661 Cross-site Scripting vulnerability in Maxum Rumpus FTP 8.2.9.1
A Cookie based reflected XSS exists in the Web File Manager of Rumpus FTP Server 8.2.9.1, related to RumpusLoginUserName and snp.
network
low complexity
maxum CWE-79
6.1
2020-02-10 CVE-2019-19664 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the Web Settings of Web File Manager in Rumpus FTP 8.2.9.1.
network
maxum CWE-352
5.8
2020-02-10 CVE-2019-19662 Cross-Site Request Forgery (CSRF) vulnerability in Maxum Rumpus FTP 8.2.9.1
A CSRF vulnerability exists in the Web File Manager's Create/Delete Accounts functionality of Rumpus FTP Server 8.2.9.1.
network
maxum CWE-352
4.3