CVE-2004-1675 Information

Description

Serv-U FTP server 4.x and 5.x allows remote attackers to cause a denial of service (application crash) via a STORE UNIQUE (STOU) command with an MS-DOS device name argument such as (1) COM1 (2) LPT1 (3) PRN or (4) AUX.

Reference

http://marc.info/?l=bugtraq&m=109495074211638&w=2 http://secunia.com/advisories/12507/ http://www.securityfocus.com/bid/11155 https://exchange.xforce.ibmcloud.com/vulnerabilities/17329

Share on: