CVE-2009-0967: Medium severity SolarWinds Serv-u File Server vulnerability
Published Mar 19, 2009
·Updated
The FTP server in Serv-U 7.0.0.1 through 7.4.0.1 allows remote authenticated users to cause a denial of service (service hang) via a large number of SMNT commands without an argument.
Affected Software
14 affected components
SolarWinds Serv-u File Server=7.0.0.1
SolarWinds Serv-u File Server=7.0.0.2
SolarWinds Serv-u File Server=7.0.0.3
SolarWinds Serv-u File Server=7.0.0.4
SolarWinds Serv-u File Server=7.1.0.0
SolarWinds Serv-u File Server=7.1.0.1
SolarWinds Serv-u File Server=7.1.0.2
SolarWinds Serv-u File Server=7.2.0.0
SolarWinds Serv-u File Server=7.2.0.1
SolarWinds Serv-u File Server=7.3.0.0
SolarWinds Serv-u File Server=7.3.0.1
SolarWinds Serv-u File Server=7.3.0.2
SolarWinds Serv-u File Server=7.4.0.0
SolarWinds Serv-u File Server=7.4.0.1
Event History
Mar 19, 2009
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0967?
CVE-2009-0967 is categorized as a denial of service vulnerability that can cause service hangs.
2
How do I fix CVE-2009-0967?
To fix CVE-2009-0967, it is recommended to upgrade to a patched version of the Serv-U File Server.
3
Which versions of Serv-U are affected by CVE-2009-0967?
CVE-2009-0967 affects Serv-U versions from 7.0.0.1 to 7.4.0.1.
4
Who is impacted by CVE-2009-0967?
Remote authenticated users can exploit CVE-2009-0967 to cause a denial of service on the FTP server.
5
What kind of attack does CVE-2009-0967 involve?
CVE-2009-0967 involves sending a large number of SMNT commands without arguments to the server.