Cooolsoft
9 CVEs tracked since 2002. Since Feb 2002, none of them reached CISA KEV.
Cooolsoft CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2002-02 | 4 | 0 |
| 2002-03 | null or fewer | |
| 2002-04 | null or fewer | |
| 2002-05 | 1 | 0 |
| 2002-06 | null or fewer | |
| 2002-07 | null or fewer | |
| 2002-08 | null or fewer | |
| 2002-09 | null or fewer | |
| 2002-10 | null or fewer | |
| 2002-11 | null or fewer | |
| 2002-12 | null or fewer | |
| 2003-01 | null or fewer | |
| 2003-02 | null or fewer | |
| 2003-03 | 3 | 0 |
| 2003-04 | null or fewer | |
| 2003-05 | 1 | 0 |
Products
The products that kept showing up in Cooolsoft's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 9 most recently published vulnerabilities affecting Cooolsoft.
- CVE-2003-0271Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument.7.5
- CVE-2002-1522Buffer overflow in PowerFTP FTP server 2.24, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long USER argument.5.0
- CVE-2002-1545CooolSoft Personal FTP Server 2.24 allows remote attackers to obtain the absolute pathname of the FTP root via a PWD command, which includes the full path in the response.5.0
- CVE-2002-1544Directory traversal vulnerability in CooolSoft Personal FTP Server 2.24 allows remote attackers to read or modify arbitrary files via .. (dot dot) sequences in the commands (1) LIST (ls), (2) mkdir...6.4
- CVE-2002-0264PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.7.5
- CVE-2001-0933Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".7.5
- CVE-2001-0932Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command.7.5
- CVE-2001-0934Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname.7.5
- CVE-2001-0931Directory traversal vulnerability in Cooolsoft PowerFTP Server 2.03 allows attackers to list or read arbitrary files and directories via a .. (dot dot) in (1) LS or (2) GET.7.5
The record
- Peak rank
- #5 in Feb 2002
- Busiest month shown
- Feb 2002, 4 CVEs
- Months with a KEV entry
- 0 since Feb 2002
- Monthly snapshots
- 4 since 2002