Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

G.Rodola

First CVE: Oct 19, 2010Active for: 16 yearsTotal CVEs: 14
20.3
VTI Score
Low

G.Rodola maintains pyftpdlib, a Python-based FTP server library that, despite limited product scope, occupies a niche in server implementations and integrations. The vendor's vulnerability surface centers on authentication bypass, race conditions in shared resource handling, path-traversal issues, and input-validation gaps that reflect the complexity of protocol-state management and file-system access control in an FTP daemon. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
14
Total CVEs
More Total CVEs than 94% of tracked vendors
14.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
5.2
Avg CVSS Score
Higher Avg CVSS Score than 14% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by G.Rodola over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 19, 2010
15 years ago
Most Recent CVE
Oct 19, 2010
5,760 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-7263HIGH
ftpserver.py in pyftpdlib before 0.5.0 does not delay its response after receiving an invalid login attempt, which makes it easier for remote attackers to obtain access via a brute
Oct 19, 20107.522NONO
CVE-2007-6737HIGH
FTPServer.py in pyftpdlib before 0.2.0 does not increment the attempted_logins count for a USER command that specifies an invalid username, which makes it easier for remote attacke
Oct 19, 20107.522NONO
CVE-2008-7262MEDIUM
Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.3.0 allow remote authenticated users to access arbitrary files and directories via vectors involv
Oct 19, 20106.520NONO
CVE-2007-6741MEDIUM
The ftp_PORT function in FTPServer.py in pyftpdlib before 0.2.0 does not prevent TCP connections to privileged ports if the destination IP address matches the source IP address of
Oct 19, 20106.520NONO
CVE-2007-6736MEDIUM
Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.2.0 allow remote authenticated users to access arbitrary files and directories via a .. (dot dot)
Oct 19, 20106.520NONO
CVE-2007-6739MEDIUM
FTPServer.py in pyftpdlib before 0.2.0 allows remote attackers to cause a denial of service via a long command.
Oct 19, 20105.017NONO
CVE-2007-6738MEDIUM
pyftpdlib before 0.1.1 does not choose a random value for the port associated with the PASV command, which makes it easier for remote attackers to obtain potentially sensitive info
Oct 19, 20105.017NONO
CVE-2010-3494MEDIUM
Race condition in the FTPHandler class in ftpserver.py in pyftpdlib before 0.5.2 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immed
Oct 19, 20104.316NONO
CVE-2009-5011MEDIUM
Race condition in the FTPHandler class in ftpserver.py in pyftpdlib before 0.5.2 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immed
Oct 19, 20104.316NONO
CVE-2009-5010MEDIUM
Race condition in the FTPHandler class in ftpserver.py in pyftpdlib before 0.5.1 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immed
Oct 19, 20104.316NONO
View all 14 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products14 CVEs
86%
14%
Severity distribution among all CVEs352,727 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown14 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown14 (100.0%)
User Interaction
None0 (0.0%)
Unknown14 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown14 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by G.Rodola.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by G.Rodola — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For G.Rodola's Products

View all 1 CNAs →

Top CWEs