← Back

Eserv

eserv

Vendor: Etype • 11 CVEs

CVEs (11)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Etype
1Eserv
Apr 23, 2026
Oct 15, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long argument to the ABOR com...Show more
Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long argument to the ABOR command.Show less
1Etype
1Eserv
Apr 16, 2026
Jun 2, 2006
N/A· v4
N/A· v3
4.0 MEDIUM· v2
The HTTP service in EServ/3 3.25 allows remote attackers to obtain sensitive information via crafted HTTP requests containing dot, space, and slash characters, which reveals the source code of script files.
1Etype
1Eserv
Apr 16, 2026
Jun 2, 2006
N/A· v4
N/A· v3
5.5 MEDIUM· v2
Directory traversal vulnerability in the IMAP service in EServ/3 3.25 allows remote authenticated users to read other user's email messages, create/rename arbitrary directories on the system, and delete empty directories...Show more
Directory traversal vulnerability in the IMAP service in EServ/3 3.25 allows remote authenticated users to read other user's email messages, create/rename arbitrary directories on the system, and delete empty directories via directory traversal sequences in the (1) CREATE, (2) SELECT, (3) DELETE, (4) RENAME, (5) COPY or (6) APPEND commands.Show less
1Etype
1Eserv
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.
1Etype
1Eserv
Apr 16, 2026
Jun 16, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated.
1Etype
1Eserv
Apr 16, 2026
May 16, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Etype Eserv 2.97 allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.
1Etype
1Eserv
Apr 16, 2026
May 16, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Etype Eserv 2.97 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of PASV commands that consume ports 1024 through 5000, which prevents the server from accepting valid PASV.
1Etype
1Eserv
Apr 16, 2026
Mar 25, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.
1Etype
1Eserv
Apr 16, 2026
Dec 19, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.
1Etype
1Eserv
Apr 16, 2026
Jun 6, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.
1Etype
1Eserv
Apr 16, 2026
Nov 4, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL.