← Back

Xftp

xftp

Vendor: Netsarang • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Netsarang
1Xftp
Jun 17, 2026
Mar 31, 2022
N/A· v4
6.5 MEDIUM· v3
6.9 MEDIUM· v2
Xftp 7.0.0088p and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.
1Netsarang
1Xftp
Jun 17, 2026
Oct 10, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying file name from an attacker controlled FTP server. That leads attacker to execute a...Show more
NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying file name from an attacker controlled FTP server. That leads attacker to execute arbitrary code by sending a crafted filename.Show less