← Back

Powerftp

powerftp

Vendor: Cooolsoft • 6 CVEs

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cooolsoft
1Powerftp
Apr 16, 2026
Apr 2, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in PowerFTP FTP server 2.24, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long USER argument.
1Cooolsoft
1Powerftp
Apr 16, 2026
May 29, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.
1Cooolsoft
1Powerftp
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.
1Cooolsoft
1Powerftp
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".
1Cooolsoft
1Powerftp
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.
1Cooolsoft
1Powerftp
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Directory traversal vulnerability in Cooolsoft PowerFTP Server 2.03 allows attackers to list or read arbitrary files and directories via a .. (dot dot) in (1) LS or (2) GET.