Vulnerabilities > Weonlydo

DATE CVE VULNERABILITY TITLE RISK
2006-05-31 CVE-2006-1175 Remote Arbitrary File Access vulnerability in WeOnlyDo SFTP ActiveX Control
The WeOnlyDo! SFTP (wodSFTP) ActiveX control is marked as safe for scripting, which allows remote attackers to read and write files in arbitrary locations by accessing the control from a web page.
network
high complexity
weonlydo
4.0
2006-05-16 CVE-2006-2407 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
network
low complexity
freeftpd freesshd weonlydo CWE-119
7.5
2005-01-10 CVE-2004-1118 Remote Buffer Overflow vulnerability in Weonlydo Wodftpdlx Activex Component 2.1.18
Buffer overflow in the WodFtpDLX.ocx (WeOnlyDo!) ActiveX component before 2.3.2.97, as used by CoffeeCup Direct FTP 6.2.0.62 and CoffeeCup Free FTP 3.0.0.10, and possibly other applications, allows remote attackers to execute arbitrary code via a long filename.
network
low complexity
weonlydo
critical
10.0