CVE-2009-3115

Solarwinds Tftp Server < 9.2.0.111 - Improper Input Validation

Title source: rule

Description

SolarWinds TFTP Server 9.2.0.111 and earlier allows remote attackers to cause a denial of service (service stop) via a crafted Option Acknowledgement (OACK) request. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Gaurav Baruah · perldoswindows
https://www.exploit-db.com/exploits/9547

Scores

EPSS 0.0611
EPSS Percentile 90.8%

Details

CWE
CWE-20
Status published
Products (5)
solarwinds/tftp_server 5.0.55
solarwinds/tftp_server 5.0.60
solarwinds/tftp_server 8.1
solarwinds/tftp_server 8.2
solarwinds/tftp_server < 9.2.0.111
Published Sep 09, 2009
Tracked Since Feb 18, 2026