RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
BID:34127
Info
RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
| Bugtraq ID: | 34127 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 16 2009 12:00AM |
| Updated: | Nov 20 2009 05:05PM |
| Credit: | Jonathan Salwan |
| Vulnerable: |
Rhino Software Serv-U 7.4.0.1 |
| Not Vulnerable: | |
Discussion
RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
RhinoSoft Serv-U is prone to a remote denial-of-service vulnerability.
Successfully exploiting this issue will allow attackers to deny service to legitimate users. Given the nature of this issue, attackers may also be able to run arbitrary code, but this has not been confirmed.
Serv-U 7.4.0.1 is vulnerable; other versions may also be affected.
RhinoSoft Serv-U is prone to a remote denial-of-service vulnerability.
Successfully exploiting this issue will allow attackers to deny service to legitimate users. Given the nature of this issue, attackers may also be able to run arbitrary code, but this has not been confirmed.
Serv-U 7.4.0.1 is vulnerable; other versions may also be affected.
Exploit / POC
RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
The following exploit code is available:
The following exploit code is available:
Solution / Fix
RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
RhinoSoft Serv-U 'SMNT' Command Remote Denial of Service Vulnerabilities
References:
References:
- Serv-U Homepage (RhinoSoft)