Vulnerabilities (CVE)

Filtered by vendor Argosoft Subscribe
Total 26 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1893 1 Argosoft 1 Argosoft Mail Server 2024-11-20 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message.
CVE-2002-1005 1 Argosoft 1 Argosoft Mail Server 2024-11-20 5.0 MEDIUM N/A
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop.
CVE-2002-1004 1 Argosoft 1 Argosoft Mail Server 2024-11-20 5.0 MEDIUM N/A
Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.
CVE-2001-1142 1 Argosoft 1 Ftp Server 2024-11-20 5.0 MEDIUM N/A
ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges.
CVE-2001-1043 1 Argosoft 1 Ftp Server 2024-11-20 5.0 MEDIUM 7.5 HIGH
ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.
CVE-2000-1194 1 Argosoft 1 Ftp Server 2024-11-20 7.5 HIGH N/A
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.