Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Texas Imperial Software

First CVE: Oct 28, 1999Active for: 27 yearsTotal CVEs: 21
34.4
VTI Score
Medium

Texas Imperial Software's vulnerability profile centers on a narrow product line of FTP server software, notably WFTPD and its commercial variants (WFTPD Pro, WFTPD Pro Explorer, WFTPD Pro Server), which have been widely deployed in enterprise file-transfer infrastructure. Although the vendor's overall CVE volume is modest relative to broad-platform vendors, the disclosure footprint is prominent enough to warrant sustained attention, and public exploit code frequently becomes available for vulnerabilities in this product category. The recurring weakness classes span memory-safety issues including buffer-boundary violations and out-of-bounds access, alongside sensitive information exposure, reflecting the protocol-parsing and authentication demands of FTP server implementations. Defenders relying on WFTPD or its variants should prioritize patch deployment and consider restricting FTP access to internal networks or modern alternatives; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
21
Total CVEs
More Total CVEs than 96% of tracked vendors
0.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
5.9
Avg CVSS Score
Higher Avg CVSS Score than 26% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Texas Imperial Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 28, 1999
26 years ago
Most Recent CVE
Dec 20, 2007
6,791 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (21 CVEs).

21 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2006-4318MEDIUM
Buffer overflow in WFTPD Server 3.23 allows remote attackers to execute arbitrary code via long SIZE commands.
Aug 24, 20066.568NOYES
CVE-1999-0950HIGH
Buffer overflow in WFTPD FTP server allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.
Oct 28, 199910.038NOYES
CVE-2001-0296HIGH
Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.
May 3, 200110.036NOYES
CVE-2006-5826MEDIUM
Buffer overflow in Texas Imperial Software WFTPD Pro Server 3.23.1.1 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) vi
Nov 10, 20065.828NOYES
CVE-2004-2367MEDIUM
The Control Panel applet in WFTPD and WFTPD Pro 3.21 R1 and R2 allows remote authenticated users to cause a denial of service (crash) via a long FTP command.
Dec 31, 20045.028NOYES
CVE-2004-0340HIGH
Stack-based buffer overflow in WFTPD Pro Server 3.21 Release 1, Pro Server 3.20 Release 2, Server 3.21 Release 1, and Server 3.10 allows local users to execute arbitrary code via l
Nov 23, 20047.227NOYES
CVE-2000-0645MEDIUM
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that do
Jul 21, 20006.427NOYES
CVE-2007-6473MEDIUM
Heap-based buffer overflow in Texas Imperial Software WFTPD Pro Explorer 1.0 allows remote FTP servers to execute arbitrary code via a long reply to a LIST command.
Dec 20, 20075.825NOYES
CVE-2001-1386HIGH
WFTPD 3.00 allows remote attackers to read arbitrary files by uploading a (link) file that ends in a ".lnk." extension, which bypasses WFTPD's check for a ".lnk" extension.
Jul 1, 20017.525NONO
CVE-2000-0644MEDIUM
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing a STAT command while the LIST command is still executing.
Jul 21, 20005.025NOYES
View all 21 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products21 CVEs
71%
24%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network1 (4.8%)
Unknown20 (95.2%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (4.8%)
High0 (0.0%)
Unknown20 (95.2%)
User Interaction
None1 (4.8%)
Unknown20 (95.2%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (4.8%)
Unknown20 (95.2%)

Exploit Exposure

Signals from CVEs in this vendor scope (21 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
4.8% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
13 CVEs
61.9% of CVEs· 84th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Texas Imperial Software.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Texas Imperial Software — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Texas Imperial Software's Products

View all 1 CNAs →

Top CWEs