Products

Showing 2 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
Smartftp vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

SmartFTP Client 9.0.2615.0 Denial of Service via Host Field

SmartFTP Client 9.0.2615.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Host field. Attackers can paste a buffer of 300 repeated characters into the Host connection parameter to trigger an application crash.

CWE-466Mar 30, 2026
CVSS6.9v4.0EPSS0.206%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

SmartFTP Client 10.0.2909.0 - 'Multiple' Denial of Service

SmartFTP Client 10.0.2909.0 contains multiple denial of service vulnerabilities that allow attackers to crash the application through specific input manipulation. Attackers can trigger crashes by entering malformed paths, using invalid IP addresses, or clearing connection history in the client's interface.

CWE-770Jan 15, 2026
CVSS4.6v4.0EPSS0.467%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX