Freefloat Ftp Server
Vendor:
First CVE: Jun 20, 2014 · Active for 12 years
38
Total CVEs
More Total CVEs than 97% of tracked products
12.7
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
9.8
Avg CVSS
Higher Avg CVSS than 99% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Freefloat Ftp Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 20, 2014
12 years ago
Most Recent CVE
Mar 22, 2026
124 days ago
CVE Severity & Scoring
Freefloat Ftp Server38 CVEs
97%
All CVEs352,294 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network37 (97.4%)
Unknown1 (2.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low37 (97.4%)
High0 (0.0%)
Unknown1 (2.6%)
User Interaction
None37 (97.4%)
Unknown1 (2.6%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None37 (97.4%)
Unknown1 (2.6%)
Top CVEs
Signals from CVEs in this product scope (38 CVEs).
38 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5106HIGH Stack-based buffer overflow in FreeFloat FTP Server 1.0 allows remote authenticated users to execute arbitrary code via a long string in a PUT command. | Jun 20, 2014 | 10.0 | 49 | NO | YES |
CVE-2012-10030CRITICAL FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote attackers to upload arbitrary files to sensitive system directories. The server accep | Aug 5, 2025 | 9.8 | 42 | NO | YES |
CVE-2012-10023CRITICAL A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly validate input passed to the USER command, allowing remote at | Aug 5, 2025 | 9.8 | 42 | NO | YES |
CVE-2025-5548CRITICAL A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. Affected is an unknown function of the component NOOP Command Handler. The manipulation le | Jun 4, 2025 | 9.8 | 41 | NO | YES |
CVE-2019-25614CRITICAL Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to execute arbitrary code by sending a crafted STOR request wit | Mar 22, 2026 | 9.8 | 32 | NO | NO |
CVE-2025-5076CRITICAL A vulnerability was found in FreeFloat FTP Server 1.0 and classified as critical. Affected by this issue is some unknown functionality of the component SEND Command Handler. The ma | May 22, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-5050CRITICAL A vulnerability was found in FreeFloat FTP Server 1.0. It has been rated as critical. This issue affects some unknown processing of the component BELL Command Handler. The manipula | May 21, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-5549CRITICAL A vulnerability has been found in FreeFloat FTP Server 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component PASV Command Hand | Jun 4, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-5221CRITICAL A vulnerability was found in FreeFloat FTP Server 1.0.0. It has been classified as critical. This affects an unknown part of the component QUOTE Command Handler. The manipulation l | May 27, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-5112CRITICAL A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. This affects an unknown part of the component MGET Command Handler. The manipulation leads | May 23, 2025 | 9.8 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (38 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
5.3% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
5.3% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (38 CVEs).
Media Mentions
Signals from CVEs in this product scope (38 CVEs).
Top CNAs Publishing CVEs For Freefloat Ftp Server
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.0 | 38 | 9.8 | 1.3% | 0 | 4 |