Vulnerabilities > Netsarang > High

DATE CVE VULNERABILITY TITLE RISK
2022-06-29 CVE-2022-33035 Uncontrolled Search Path Element vulnerability in Netsarang Xlpd
XLPD v7.0.0094 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.
local
low complexity
netsarang CWE-427
7.2
2019-10-10 CVE-2019-17320 Classic Buffer Overflow vulnerability in Netsarang Xftp
NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying file name from an attacker controlled FTP server.
network
low complexity
netsarang CWE-120
7.5