Pablo Software Solutions maintains a narrow portfolio centered on FTP servers and lightweight web and mail applications, products that typically operate in small-business and legacy environments. The vendor's vulnerability profile is characterized by path-traversal and directory-access weaknesses endemic to file-transfer and web-serving functionality, and public exploit code for these flaws has frequently been available. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pablo Software Solutions over time
Signals from CVEs in this vendor scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-2027MEDIUM Buffer overflow in Unicode processing in the logging functionality in Pablo Software Solutions Quick 'n Easy FTP Server Professional and Lite, probably 3.0, allows remote authentic | Apr 26, 2006 | 6.5 | 27 | NO | YES |
CVE-2019-19943HIGH The HTTP service in quickweb.exe in Pablo Quick 'n Easy Web Server 3.3.8 allows Remote Unauthenticated Heap Memory Corruption via a large host or domain parameter. It may be possib | Feb 28, 2020 | 7.5 | 25 | NO | NO |
CVE-2002-2209HIGH Unspecified "security vulnerability" in Baby FTP Server versions before November 7, 2002 has unknown impact and attack vectors. | Dec 31, 2002 | 10.0 | 24 | NO | NO |
CVE-2009-1602MEDIUM Pablo Software Solutions Quick 'n Easy Mail Server 3.3 allows remote attackers to cause a denial of service (daemon outage or CPU consumption) via multiple long SMTP commands, as d | May 11, 2009 | 5.0 | 23 | NO | YES |
CVE-2005-2479MEDIUM Quick 'n Easy FTP Server 3.0 allows remote attackers to cause a denial of service (application crash or CPU consumption) via a long USER command. | Aug 5, 2005 | 5.0 | 23 | NO | YES |
CVE-2003-1300MEDIUM Baby FTP Server (BabyFTP) 1.2, and possibly other versions before May 31, 2003, allows remote attackers to cause a denial of service via a large number of connections from the same | Dec 31, 2003 | 5.0 | 20 | NO | NO |
CVE-2002-1244HIGH Format string vulnerability in Pablo FTP Server 1.5, 1.3, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via | Nov 12, 2002 | 7.5 | 20 | NO | NO |
CVE-2002-1054MEDIUM Directory traversal vulnerability in Pablo FTP server 1.0 build 9 and earlier allows remote authenticated users to list arbitrary directories via "..\" (dot-dot backslash) sequence | Oct 4, 2002 | 6.4 | 19 | NO | NO |
CVE-2006-3844MEDIUM Buffer overflow in Quick 'n Easy FTP Server 3.0 allows remote authenticated users to execute arbitrary commands via a long argument to the LIST command, a different issue than CVE- | Jul 25, 2006 | 6.5 | 18 | NO | NO |
CVE-2003-1299MEDIUM Directory traversal vulnerability in Baby FTP Server 1.2, and possibly other versions before May 31, 2003 allows remote authenticated users to list arbitrary directories and possib | Dec 31, 2003 | 4.0 | 17 | NO | NO |
Signals from CVEs in this vendor scope (13 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pablo Software Solutions.
Media articles that mention a CVE ID that affects a product developed by Pablo Software Solutions — matched by CVE ID, not by vendor name.