← Back

Rumpus Ftp Server

rumpus_ftp_server

Vendor: Maxum Development Corporation • 6 CVEs

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 23, 2026
Jan 19, 2007
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Rumpus 5.1 and earlier has weak permissions for certain files and directories under /usr/local/Rumpus, including the configuration file, which allows local users to have an unknown impact by creating, modifying, or delet...Show more
Rumpus 5.1 and earlier has weak permissions for certain files and directories under /usr/local/Rumpus, including the configuration file, which allows local users to have an unknown impact by creating, modifying, or deleting files.Show less
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 23, 2026
Jan 19, 2007
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Untrusted search path vulnerability in Rumpus 5.1 and earlier allows local users to gain privileges via a modified PATH that points to a malicious ipfw program.
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 23, 2026
Jan 19, 2007
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Multiple heap-based buffer overflows in rumpusd in Rumpus 5.1 and earlier (1) allow remote authenticated users to execute arbitrary code via a long LIST command and other unspecified requests to the FTP service, and (2)...Show more
Multiple heap-based buffer overflows in rumpusd in Rumpus 5.1 and earlier (1) allow remote authenticated users to execute arbitrary code via a long LIST command and other unspecified requests to the FTP service, and (2) allow remote attackers to execute arbitrary code via unspecified requests to the HTTP service.Show less
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 16, 2026
Sep 20, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir command that specifies a large number of sub-folders.
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 16, 2026
Sep 20, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Maxum Rumpus FTP Server 1.3.3 and 2.0.3 dev 3 allows a remote attacker to perform a denial of service (hang) by creating a directory name of a specific length.
1Maxum Development Corporation
1Rumpus Ftp Server
Apr 16, 2026
Sep 20, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Maxum Rumpus FTP Server 1.3.3 and 2.0.3 dev 3 stores passwords in plaintext in the "Rumpus User Database" file in the prefs folder, which could allow attackers to gain privileges on the server.