Vulnerabilities (CVE)

Filtered by vendor Argosoft Subscribe
Total 26 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1429 1 Argosoft 1 Ftp Server 2023-12-10 7.5 HIGH N/A
ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote attackers to guess passwords via a brute force attack.
CVE-2000-1194 1 Argosoft 1 Ftp Server 2023-12-10 7.5 HIGH N/A
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.
CVE-2002-1005 1 Argosoft 1 Argosoft Mail Server 2023-12-10 5.0 MEDIUM N/A
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop.
CVE-2001-1142 1 Argosoft 1 Ftp Server 2023-12-10 5.0 MEDIUM N/A
ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges.
CVE-2002-1893 1 Argosoft 1 Argosoft Mail Server 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message.
CVE-2002-1004 1 Argosoft 1 Argosoft Mail Server 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.