← Back

Spotftp

spotftp

Vendor: Nsasoft • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nsasoft
1Spotftp
Apr 17, 2026
Apr 12, 2026
6.9 MEDIUM· v4
5.5 MEDIUM· v3
N/A· v2
SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generat...Show more
SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generate a 256-byte payload, paste it into the Name input field, and trigger a crash when submitting the registration code.Show less
1Nsasoft
1Spotftp
Feb 20, 2026
Feb 11, 2026
4.6 MEDIUM· v4
7.5 HIGH· v3
N/A· v2
SpotFTP 3.0.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste it into the...Show more
SpotFTP 3.0.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste it into the 'Name' field to trigger an application crash.Show less
1Nsasoft
1Spotftp
Feb 20, 2026
Feb 11, 2026
4.6 MEDIUM· v4
7.5 HIGH· v3
N/A· v2
SpotFTP 3.0.0.0 contains a buffer overflow vulnerability in the registration key input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Key' fie...Show more
SpotFTP 3.0.0.0 contains a buffer overflow vulnerability in the registration key input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Key' field to trigger an application crash and denial of service.Show less