Intervations develops a suite of focused file transfer and mail server products, including FileCopa, NaviCopa Web Server, and MailCopa, that serve small to medium business deployments. Vulnerabilities affecting the vendor recur around information-disclosure and path-traversal flaws that are characteristic of file-handling and access-control issues in server software, and frequently acquire public exploit code. Live severity, exploitation, and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Intervations over time
Signals from CVEs in this vendor scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-5112HIGH Buffer overflow in InterVations NaviCOPA Web Server 2.01 allows remote attackers to execute arbitrary code via a long HTTP GET request. | Oct 3, 2006 | 7.5 | 73 | NO | YES |
CVE-2006-3726MEDIUM Buffer overflow in FileCOPA FTP Server before 1.01 released on 18th July 2006, allows remote authenticated attackers to execute arbitrary code via a long argument to the LIST comma | Jul 21, 2006 | 6.5 | 69 | NO | YES |
CVE-2007-1733HIGH Buffer overflow in InterVations NaviCOPA HTTP Server 2.01 allows remote attackers to execute arbitrary code via a long (1) /cgi-bin/ or (2) /cgi/ pathname in an HTTP GET request, p | Mar 28, 2007 | 10.0 | 40 | NO | YES |
CVE-2010-2112HIGH Directory traversal vulnerability in the FTP service in FileCOPA before 5.03 allows remote attackers to read or overwrite arbitrary files via unknown vectors. NOTE: the provenance | May 28, 2010 | 8.8 | 25 | NO | NO |
CVE-2009-3646MEDIUM InterVations NaviCOPA Web Server 3.01 allows remote attackers to obtain the source code for a web page via an HTTP request with the addition of ::$DATA after the HTML file name. | Oct 9, 2009 | 5.0 | 24 | NO | YES |
CVE-2007-2505HIGH Stack-based buffer overflow in InterVations MailCOPA 8.01 20070323 allows user-assisted remote attackers to execute arbitrary code via a long command line argument, as demonstrated | May 4, 2007 | 9.3 | 24 | NO | NO |
CVE-2006-2254MEDIUM Buffer overflow in filecpnt.exe in FileCOPA 1.01 allows remote attackers to cause a denial of service (application crash) via a username with a large number of newline characters. | May 9, 2006 | 5.0 | 23 | NO | YES |
CVE-2007-2336HIGH Unspecified vulnerability in InterVations NaviCOPA Web Server 2.01 20070323 allows remote attackers to cause a denial of service (daemon crash) via crafted HTTP requests, as demons | Apr 27, 2007 | 7.8 | 22 | NO | NO |
CVE-2007-1598MEDIUM Stack-based buffer overflow in InterVations FileCOPA FTP Server 1.01 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by filecopa.tar by I | Mar 22, 2007 | 6.8 | 19 | NO | NO |
CVE-2006-3768MEDIUM Integer underflow in filecpnt.exe in FileCOPA FTP Server 1.01 before 2006-07-21 allow remote authenticated users to execute arbitrary code via a long argument to the (1) CWD, (2) D | Jul 28, 2006 | 6.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (12 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Intervations.
Media articles that mention a CVE ID that affects a product developed by Intervations — matched by CVE ID, not by vendor name.