south river technologies
Enterprise Softwarecommercial
Top products
Latest CVEs
The 13 most recently published vulnerabilities affecting south river technologies.
- CVE-2023-45690Information leak via default file permissions on Titan MFT and Titan SFTP servers4.9
- CVE-2023-45689Arbitrary file read via path traversal in Titan MFT and Titan SFTP servers6.5
- CVE-2023-45688Information leak via path traversal in Titan MFT and Titan SFTP servers4.3
- CVE-2023-45687Authentication bypass via session fixation in Titan MFT and Titan SFTP servers8.8
- CVE-2023-45686Arbitrary file write via WebDAV path traversal in Titan MFT and Titan SFTP servers7.2
- CVE-2023-45685Arbitrary file write via "zip slip" in Titan MFT and Titan SFTP servers9.1
- CVE-2022-34005An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050. There is Remote Code Execution due to a hardcoded password for the sa account on the Microsoft SQL Express 2019 instance...9.8
- CVE-2022-34006An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050. When installing, Microsoft SQL Express 2019 installs by default with an SQL instance running as SYSTEM with BUILTIN\User...7.8
- CVE-2009-4606South River Technologies WebDrive 9.02 build 2232 installs the WebDrive Service without a security descriptor, which allows local users to (1) stop the service via the stop command, (2) execute arb...7.2
- CVE-2008-5281Heap-based buffer overflow in Titan FTP Server 6.05 build 550 allows remote attackers to execute arbitrary code via a long DELE command.10.0
- CVE-2008-0702Multiple heap-based buffer overflows in Titan FTP Server 6.03 and 6.0.5.549 allow remote attackers to cause a denial of service (daemon crash or hang) and possibly execute arbitrary code via a long...9.3
- CVE-2004-1641Heap-based buffer overflow in Titan FTP 3.21 and earlier allows remote attackers to cause a denial of service (crash) via a long FTP command such as (1) CWD, (2) STAT, or (3) LIST.5.0
- CVE-2004-0437Titan FTP Server version 3.01 build 163, and possibly other versions before build 169, allows remote authenticated users to cause a denial of service (crash) by disconnecting from the system during...5.0