CVE-2004-1675
Serv-U File Server 4.x-5.x - Denial of Service via STOU Command with MS-DOS Device Name
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1675. PoCs published by str0ke.
AI-analyzed exploit summary This exploit demonstrates a denial-of-service (DoS) vulnerability in Serv-U FTP server up to version 5.2. It authenticates with the server and sends a malformed 'STOU AUX' command to trigger the DoS condition.
Description
Serv-U FTP server 4.x and 5.x allows remote attackers to cause a denial of service (application crash) via a STORE UNIQUE (STOU) command with an MS-DOS device name argument such as (1) COM1, (2) LPT1, (3) PRN, or (4) AUX.
Exploits (1)
This exploit demonstrates a denial-of-service (DoS) vulnerability in Serv-U FTP server up to version 5.2. It authenticates with the server and sends a malformed 'STOU AUX' command to trigger the DoS condition.