Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Jgaa

First CVE: Feb 1, 1998Active for: 28 yearsTotal CVEs: 8

Jgaa's vulnerability profile centers on WarFTPD, a legacy file-transfer server whose exposure reflects the characteristic weaknesses of older FTP implementations. The recurring technical signals include format-string vulnerabilities and input-validation issues that are endemic to protocol parsers built without modern memory-safety disciplines, and the vendor's disclosures have acquired public exploit code. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
1.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
6.5
Avg CVSS Score
Higher Avg CVSS Score than 40% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Jgaa over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 1, 1998
28 years ago
Most Recent CVE
Apr 1, 2014
4,497 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-1999-0256HIGH
Buffer overflow in War FTP allows remote execution of commands.
Feb 1, 19987.577NOYES
CVE-2000-0131MEDIUM
Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
Feb 1, 20005.027NOYES
CVE-2013-2278HIGH
Unspecified vulnerability in War FTP Daemon (warftpd) 1.82, when running as a Windows service, allows remote attackers to cause a denial of service (crash) and possibly execute arb
Apr 1, 201410.025NONO
CVE-2009-5141MEDIUM
Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated users to cause a denial of service (crash) via format string specifiers in a LIST com
Apr 1, 20144.025NOYES
CVE-2000-0044HIGH
Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.
Jan 6, 200010.025NONO
CVE-2006-5789MEDIUM
War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to cause a denial of service via a large number of "%s" format strings in (1) CWD, (2) CDUP, (3) DELE, (4) N
Nov 7, 20064.021NOYES
CVE-2006-2171MEDIUM
Buffer overflow in WDM.exe in WarFTPD allows remote attackers to execute arbitrary code via unspecified arguments, as demonstrated by the Infigo FTPStress Fuzzer.
May 4, 20066.420NONO
CVE-1999-1003MEDIUM
War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.
Dec 13, 19995.015NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
63%
38%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown8 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown8 (100.0%)
User Interaction
None0 (0.0%)
Unknown8 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown8 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
12.5% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
4 CVEs
50.0% of CVEs· 81st percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Jgaa.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Jgaa — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Jgaa's Products

View all 1 CNAs →

Top CWEs