CVE-2005-0850

NUCLEI

FileZilla Server < 0.9.6 - Denial of Service via MS-DOS Device Name Filename Request

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2005-0850 has a Nuclei detection template available — see the Nuclei card below for the Shodan/FOFA recon queries.

Description

FileZilla FTP server before 0.9.6 allows remote attackers to cause a denial of service via a request for a filename containing an MS-DOS device name such as CON, NUL, COM1, LPT1, and others.

Nuclei Templates (1)

FileZilla Server < 0.9.6 - DoS via MS-DOS Device Names
MEDIUMVERIFIEDby pussycat0x
Shodan: product:"FileZilla"

References (2)

Core 2
Core References
Patch, Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12865
Product, Third Party Advisory x_refsource_confirm
http://sourceforge.net/project/shownotes.php?group_id=21558&release_id=314473

Scores

EPSS 0.0014
EPSS Percentile 33.9%

Details

CWE
CWE-20
Status published
Products (1)
filezilla-project/filezilla_server < 0.9.6
Published May 02, 2005
Tracked Since Feb 18, 2026