CVE-2004-1992

Solarwinds Serv-u File Server < 5.0.0.4 - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in Serv-U FTP server before 5.0.0.6 allows remote attackers to cause a denial of service (crash) via a long -l parameter, which triggers an out-of-bounds read.

Exploits (1)

exploitdb WORKING POC VERIFIED
by storm · perldoswindows
https://www.exploit-db.com/exploits/24029

Scores

EPSS 0.1138
EPSS Percentile 93.6%

Details

CWE
CWE-119
Status published
Products (10)
solarwinds/serv-u_file_server 3.0.0.16
solarwinds/serv-u_file_server 3.0.0.17
solarwinds/serv-u_file_server 3.1.0.0
solarwinds/serv-u_file_server 3.1.0.1
solarwinds/serv-u_file_server 3.1.0.3
solarwinds/serv-u_file_server 4.0.0.4
solarwinds/serv-u_file_server 4.1.0.0
solarwinds/serv-u_file_server 4.1.0.3
solarwinds/serv-u_file_server 5.0.0.0
solarwinds/serv-u_file_server < 5.0.0.4
Published Apr 20, 2004
Tracked Since Feb 18, 2026