Vulnerabilities (CVE)

Filtered by vendor Bolintech Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-6724 1 Bolintech 1 Dream Ftp Server 2024-02-04 4.0 MEDIUM N/A
BolinTech Dream FTP Server 1.02 allows remote authenticated users, including anonymous users, to cause a denial of service (application crash) via a certain invalid PORT command.
CVE-2007-0338 1 Bolintech 1 Dreamftp Server 2024-02-04 7.5 HIGH N/A
Heap-based buffer overflow in Dream FTP Server allows remote attackers to execute arbitrary code via a USER command with a large number of format string specifiers, which triggers the overflow during processing of the Server Log.
CVE-2004-0277 1 Bolintech 1 Dream Ftp Server 2024-02-04 10.0 HIGH N/A
Format string vulnerability in Dream FTP 1.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the username.
CVE-2004-2074 1 Bolintech 1 Dream Ftp Server 2024-02-04 5.0 MEDIUM N/A
Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string specifiers in the (1) PASS or (2) RETR commands.