Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Winscp

First CVE: Dec 23, 2002Active for: 24 yearsTotal CVEs: 17
55.2
VTI Score
TOP TARGET

WinSCP is a widely deployed file-transfer client that handles SSH and SFTP operations across diverse enterprise and individual user environments, presenting a notable attack surface due to its direct exposure to user input and file-system operations. Vulnerabilities affecting the vendor skew toward serious outcomes, frequently acquire public exploit code, and recur through weakness classes including improper input validation, buffer overflows, path traversal, and argument injection—issues characteristic of applications that parse remote protocols and construct file paths or system commands. Defenders should treat WinSCP advisories as high-priority given the client's role in privileged file access and the availability of weaponizable exploits; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
17
Total CVEs
More Total CVEs than 95% of tracked vendors
1.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
7.8
Avg CVSS Score
Higher Avg CVSS Score than 76% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Winscp over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 23, 2002
23 years ago
Most Recent CVE
Apr 15, 2024
831 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (17 CVEs).

17 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2002-1359HIGH
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary
Dec 23, 200210.085NOYES
CVE-2023-48795MEDIUM
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packet
Dec 18, 20235.981NOYES
CVE-2019-6111MEDIUM
An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which files/directories are sent to the client. However, the s
Jan 31, 20195.967NOYES
CVE-2019-6110MEDIUM
In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipulate the client output, for ex
Jan 31, 20196.844NOYES
CVE-2002-1357HIGH
Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or
Dec 23, 200210.035NONO
CVE-2007-4909HIGH
Interpretation conflict in WinSCP before 4.0.4 allows remote attackers to perform arbitrary file transfers with a remote server via file-transfer commands in the final portion of a
Sep 17, 20079.334NOYES
CVE-2021-3331CRITICAL
WinSCP before 5.17.10 allows remote attackers to execute arbitrary programs when the URL handler encounters a crafted URL that loads session settings. (For example, this is exploit
Jan 27, 20219.833NONO
CVE-2002-1358HIGH
Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arb
Dec 23, 200210.033NONO
CVE-2006-3015HIGH
Argument injection vulnerability in WinSCP 3.8.1 build 328 allows remote attackers to upload or download arbitrary files via encoded spaces and double-quote characters in a scp or
Jun 14, 20067.129NOYES
CVE-2002-1360HIGH
Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attack
Dec 23, 200210.029NONO
View all 17 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products17 CVEs
47%
41%
12%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (52.9%)
Unknown8 (47.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (17.6%)
High6 (35.3%)
Unknown8 (47.1%)
User Interaction
None6 (35.3%)
Unknown8 (47.1%)
Required3 (17.6%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None9 (52.9%)
Unknown8 (47.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (17 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
5.9% of CVEs· 98th percentile
Nuclei
1 CVE
5.9% of CVEs· 96th percentile
ExploitDB
5 CVEs
29.4% of CVEs· 79th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Winscp.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Winscp — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Winscp's Products

View all 1 CNAs →

Top CWEs