Summary
Serv-U is prone to denial-of-service and security-bypass vulnerabilities.
Exploiting these issues can allow attackers to create directories without having sufficient permissions, or crash the affected application, resulting in denial-of-service conditions.
Versions prior to Serv-U 10.2.0.0 are vulnerable.
Solution
Updates are available. Please see the references for more information.
References
Updated on 2015-03-25
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Golden FTP Server Malformed Message Denial Of Service Vulnerability
- BisonFTP Multiple Commands Remote Buffer Overflow Vulnerabilities
- SmartFTP Filename Processing Unspecified Vulnerability
- Serv-U Denial of Service and Security Bypass Vulnerabilities
- SolarFTP USER Command Remote Denial of Service Vulnerability