Known Vulnerabilities for products from Cerberusftp

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Cerberusftp".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-6265 json Insecure preserved inherited permissions vulnerability in Cerberus FTP Server on Windows allows Privilege Escalation.This iss... Not Provided 2026-04-27 2026-05-07
CVE-2020-5196 json Cerberus FTP Server Enterprise Edition prior to versions 11.0.3 and 10.0.18 allows an authenticated attacker to create files,... 8.1 - HIGH 2020-01-14 2020-01-17
CVE-2020-5195 json Reflected XSS through an IMG element in Cerberus FTP Server prior to versions 11.0.1 and 10.0.17 allows a remote attacker to ... 6.1 - MEDIUM 2020-01-13 2020-01-22
CVE-2020-5194 json The zip API endpoint in Cerberus FTP Server 8 allows an authenticated attacker without zip permission to use the zip function... 5.4 - MEDIUM 2020-01-14 2021-07-21
CVE-2019-25046 json The Web Client in Cerberus FTP Server Enterprise before 10.0.19 and 11.x before 11.0.4 allows XSS via an SVG document. 6.1 - MEDIUM 2021-06-10 2021-06-17
CVE-2017-6367 json In Cerberus FTP Server 8.0.10.1, a crafted HTTP request causes the Windows service to crash. The attack methodology involves ... 7.5 - HIGH 2017-03-14 2017-03-17
CVE-2012-6339 json Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface in Cerberus FTP Server before 5.0.6.0... Not Provided 2012-12-31 2026-04-29
CVE-2012-5301 json The default configuration of Cerberus FTP Server before 5.0.4.0 supports the DES cipher for SSH sessions, which makes it easi... Not Provided 2012-10-04 2026-04-29
CVE-2012-2999 json Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface in Cerberus FTP Server before 5.0.5.0 allow r... Not Provided 2012-10-04 2026-04-29
CVE-2004-2769 json Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to list hidden files, even when the "Display hidden file... Not Provided 2010-07-02 2026-04-29

Known software with vulnerabilities from Cerberusftp

Type Vendor Product Version
ApplicationCerberusftpFtp Server1.0