Etype maintains a narrowly scoped vulnerability footprint concentrated in its eserv product, which occupies a position among more prominent vendors in the landscape. The recurring exposure centers on memory-buffer boundary violations and related low-level implementation issues, and disclosed vulnerabilities have a strong tendency to acquire public exploit code. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Etype over time
Signals from CVEs in this vendor scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-4588HIGH Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary | Oct 15, 2008 | 10.0 | 37 | NO | YES |
CVE-2000-0523HIGH Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command. | Jun 6, 2000 | 10.0 | 36 | NO | YES |
CVE-2003-1266MEDIUM The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amoun | Dec 31, 2003 | 5.0 | 29 | NO | YES |
CVE-2003-0290MEDIUM Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection | Jun 16, 2003 | 5.0 | 25 | NO | YES |
CVE-2002-0112MEDIUM Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL. | Mar 25, 2002 | 5.0 | 25 | NO | YES |
CVE-1999-1509MEDIUM Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL. | Nov 4, 1999 | 5.0 | 25 | NO | YES |
CVE-2002-0222HIGH Etype Eserv 2.97 allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command. | May 16, 2002 | 7.5 | 24 | NO | NO |
CVE-2000-0907HIGH EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands. | Dec 19, 2000 | 7.5 | 20 | NO | NO |
CVE-2002-0221MEDIUM Etype Eserv 2.97 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of PASV commands that consume ports 1024 through 5000, which prevents | May 16, 2002 | 5.0 | 19 | NO | NO |
CVE-2006-2308MEDIUM Directory traversal vulnerability in the IMAP service in EServ/3 3.25 allows remote authenticated users to read other user's email messages, create/rename arbitrary directories on | Jun 2, 2006 | 5.5 | 16 | NO | NO |
Signals from CVEs in this vendor scope (11 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Etype.
Media articles that mention a CVE ID that affects a product developed by Etype — matched by CVE ID, not by vendor name.