Vulnerabilities (CVE)

Filtered by vendor Codecrafters Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-0547 1 Codecrafters 1 Ability Ftp Server 2024-04-11 5.0 MEDIUM 7.5 HIGH
A vulnerability has been found in Ability FTP Server 2.34 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component APPE Command Handler. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250717 was assigned to this vulnerability.
CVE-2019-9557 1 Codecrafters 1 Ability Mail Server 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
Ability Mail Server 4.2.6 has Persistent Cross Site Scripting (XSS) via the body e-mail body. To exploit the vulnerability, the victim must open an email with malicious Javascript inserted into the body of the email as an iframe.
CVE-2017-17752 1 Codecrafters 1 Ability Mail Server 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
Ability Mail Server 3.3.2 has Cross Site Scripting (XSS) via the body of an e-mail message, with JavaScript code executed on the Read Mail screen (aka the /_readmail URI). This is fixed in version 4.2.4.