← Back

Bisonware

bisonware

5 CVEs • 3 products

Products (3)

Click to collapse
Toggle

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Bisonware
1Bisonftp
May 6, 2026
Sep 29, 2015
N/A· v4
N/A· v3
7.8 HIGH· v2
Directory traversal vulnerability in BisonWare BisonFTP 3.5 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in a RETR command.
1Bisonware
1Bison Ftp Server
Apr 16, 2026
Oct 18, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
BisonFTP V4R1 allows local users to access directories outside of their home directory by uploading .bdl files, which can then be linked to other directories.
1Bisonware
1Bisonware Ftp Server
Apr 16, 2026
May 17, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via long (1) USER, (2) LIST, or (3) CWD commands.
1Bisonware
1Bisonware Ftp Server
Apr 16, 2026
May 17, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
BisonWare FTP Server 4.1 and earlier allows remote attackers to cause a denial of service via a malformed PORT command that contains a non-numeric character and a large number of carriage returns.
1Bisonware
1Bisonware Ftp Server
Apr 16, 2026
Sep 12, 1997
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Remote attackers can cause a denial of service in FTP by issuing multiple PASV commands, causing the server to run out of available ports.