Search: "ncftp"

5 CVEs found

Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a long PORT command.

Published: 1999-01-01
Products: 1
Vendors:
ncftp

automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be...

Published: 1999-12-31
Products: 1
Vendors:
redhat
CVE-2004-1948
4.6 MEDIUM

NcFTP client 3.1.6 and 3.1.7, when the username and password are included in an FTP URL that is provided on the command line, allows local users to obtain sensitive information via "ps aux," which dis...

Published: 2004-04-20
Products: 13
Vendors:
ncftp_software
CVE-2005-4784
5.6 MEDIUM

Multiple buffer overflows in the POSIX readdir_r function, as used in multiple packages, allow local users to cause a denial of service and possibly execute arbitrary code via (1) a symlink attack tha...

Published: 2005-12-31
Products: 1
Vendors:
austin_group
CVE-2007-5201
4.6 MEDIUM

The FTP backend for Duplicity before 0.4.9 sends the password as a command line argument when calling ncftp, which might allow local users to read the password by listing the process and its arguments...

Published: 2007-10-04
Products: 1
Vendors:
duplicity_project