Vulnerabilities > Progress > Ipswitch WS FTP Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-02 CVE-2022-36967 Cross-site Scripting vulnerability in Progress Ipswitch WS FTP Server
In Progress WS_FTP Server prior to version 8.7.3, multiple reflected cross-site scripting (XSS) vulnerabilities exist in the administrative web interface.
network
low complexity
progress CWE-79
6.1
2022-08-02 CVE-2022-36968 Cross-Site Request Forgery (CSRF) vulnerability in Progress Ipswitch WS FTP Server
In Progress WS_FTP Server prior to version 8.7.3, forms within the administrative interface did not include a nonce to mitigate the risk of cross-site request forgery (CSRF) attacks.
network
low complexity
progress CWE-352
4.3