Vulnerabilities > Southrivertech > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-16 CVE-2023-45688 Path Traversal vulnerability in Southrivertech Titan MFT Server and Titan Sftp Server
Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to get the size of an arbitrary file on the filesystem using path traversal in the ftp "SIZE" command
network
low complexity
southrivertech CWE-22
4.3
2023-10-16 CVE-2023-45689 Path Traversal vulnerability in Southrivertech Titan MFT Server and Titan Sftp Server
Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker with administrative privileges to read any file on the filesystem via path traversal
network
low complexity
southrivertech CWE-22
6.5
2023-10-16 CVE-2023-45690 Incorrect Default Permissions vulnerability in Southrivertech Titan FTP Server and Titan MFT Server
Default file permissions on South River Technologies' Titan MFT and Titan SFTP servers on Linux allows a user that's authentication to the OS to read sensitive files on the filesystem
network
low complexity
southrivertech CWE-276
4.9
2023-08-22 CVE-2022-44215 Open Redirect vulnerability in Southrivertech Titan FTP Server
There is an open redirect vulnerability in Titan FTP server 19.0 and below.
network
low complexity
southrivertech CWE-601
6.1
2019-06-03 CVE-2019-10009 Path Traversal vulnerability in Southrivertech Titan FTP Server 2019
A Directory Traversal issue was discovered in the Web GUI in Titan FTP Server 2019 Build 3505.
network
low complexity
southrivertech CWE-22
4.0
2014-04-29 CVE-2014-1843 Path Traversal vulnerability in Southrivertech Titan FTP Server
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to obtain the property information of an arbitrary home folder via a Properties action with a ..
network
low complexity
southrivertech CWE-22
5.0
2014-04-29 CVE-2014-1842 Path Traversal vulnerability in Southrivertech Titan FTP Server
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to list all usernames via a Go action with a ..
network
low complexity
southrivertech CWE-22
5.0
2014-04-29 CVE-2014-1841 Path Traversal vulnerability in Southrivertech Titan FTP Server
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to copy an arbitrary user's home folder via a Move action with a ..
network
low complexity
southrivertech CWE-22
5.0
2010-06-24 CVE-2010-2426 Path Traversal vulnerability in Southrivertech Titan FTP Server
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read arbitrary files, determine file size, via "..//" sequences in the xcrc command.
network
low complexity
southrivertech CWE-22
4.0
2010-06-24 CVE-2010-2425 Path Traversal vulnerability in Southrivertech Titan FTP Server
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read or delete arbitrary files via "..//" sequences in a COMB command.
network
low complexity
southrivertech CWE-22
6.5