Search Results (5 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2019-25590 1 Labf 1 Axessh 2026-03-23 6.2 Medium
Axessh 4.2 contains a denial of service vulnerability in the logging configuration that allows local attackers to crash the application by supplying an excessively long string in the log file name field. Attackers can enable session logging, paste a buffer of 500 or more characters into the log file name parameter, and trigger a crash when establishing a telnet connection.
CVE-2019-25607 1 Labf 1 Axessh 2026-03-23 8.4 High
Axessh 4.2 contains a stack-based buffer overflow vulnerability in the log file name field that allows local attackers to execute arbitrary code by supplying an excessively long filename. Attackers can overflow the buffer at offset 214 bytes to overwrite the instruction pointer and execute shellcode with system privileges.
CVE-2019-19782 1 Labf 1 Aceaxe Plus 2024-11-21 9.8 Critical
The FTP client in AceaXe Plus 1.0 allows a buffer overflow via a long EHLO response from an FTP server.
CVE-2017-18047 1 Labf 1 Nfsaxe 2024-11-21 N/A
Buffer Overflow in the FTP client in LabF nfsAxe 3.7 allows remote FTP servers to execute arbitrary code via a long reply.
CVE-2017-14742 1 Labf 1 Nfsaxe 2024-11-21 9.8 Critical
Buffer overflow in LabF nfsAxe FTP client 3.7 allows an attacker to execute code remotely.