Serv-U Denial of Service and Security Bypass Vulnerabilities
BID:50906
Info
Serv-U Denial of Service and Security Bypass Vulnerabilities
| Bugtraq ID: | 50906 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 05 2011 12:00AM |
| Updated: | Dec 05 2011 12:00AM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
Serv-U Serv-U 11.1.0.3 |
| Not Vulnerable: | |
Discussion
Serv-U Denial of Service and Security Bypass Vulnerabilities
Serv-U is prone to a denial-of-service vulnerability and a security-bypass vulnerability.
Attackers can exploit these issues to perform denial-of-service attacks or gain unauthorized access to the affected application.
Serv-U 11.1.0.3 and prior versions are vulnerable.
Serv-U is prone to a denial-of-service vulnerability and a security-bypass vulnerability.
Attackers can exploit these issues to perform denial-of-service attacks or gain unauthorized access to the affected application.
Serv-U 11.1.0.3 and prior versions are vulnerable.
Exploit / POC
Serv-U Denial of Service and Security Bypass Vulnerabilities
An attacker can use standard tools to exploit these issues.
The following exploit code is available:
An attacker can use standard tools to exploit these issues.
The following exploit code is available:
Solution / Fix
Serv-U Denial of Service and Security Bypass Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Serv-U Denial of Service and Security Bypass Vulnerabilities
References:
References:
- Serv-U Homepage (Rhino Software)
- Vulnerabilities in Serv-U 11.1.0.3 ([email protected])