Serv-U 7.0.0.1 through 7.3, including 7.2.0.1, allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted stou command, probably related to MS-DOS device names, as demonstrated using "con:1".
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2008-10-08 17:00
Updated : 2020-07-28 07:40
NVD link : CVE-2008-4500
Mitre link : CVE-2008-4500
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
solarwinds
- serv-u_file_server