10
CVSSv2

CVE-2004-0330

Published: 23/11/2004 Updated: 28/07/2020
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Serv-U ftp prior to 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time zone argument to the MDTM command.

Vulnerable Product Search on Vulmon Subscribe to Product

solarwinds serv-u file server

solarwinds serv-u file server 4.1.0.0

solarwinds serv-u file server 3.0.0.17

solarwinds serv-u file server 4.1.0.3

solarwinds serv-u file server 4.0.0.4

solarwinds serv-u file server 3.1.0.3

solarwinds serv-u file server 3.0.0.16

solarwinds serv-u file server 3.1.0.0

solarwinds serv-u file server 3.1.0.1

Exploits

## # $Id: servu_mdtmrb 10394 2010-09-20 08:06:27Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Meta ...
source: wwwsecurityfocuscom/bid/9751/info Serv-U FTP Server has been reported prone to a remote stack based buffer overflow vulnerability when handling time zone arguments passed to the MDTM FTP command The problem exists due to insufficient bounds checking Ultimately an attacker may leverage this issue to have arbitrary instructions e ...
source: wwwsecurityfocuscom/bid/9751/info Serv-U FTP Server has been reported prone to a remote stack based buffer overflow vulnerability when handling time zone arguments passed to the MDTM FTP command The problem exists due to insufficient bounds checking Ultimately an attacker may leverage this issue to have arbitrary instructions ...
source: wwwsecurityfocuscom/bid/9751/info Serv-U FTP Server has been reported prone to a remote stack based buffer overflow vulnerability when handling time zone arguments passed to the MDTM FTP command The problem exists due to insufficient bounds checking Ultimately an attacker may leverage this issue to have arbitrary instruct ...
source: wwwsecurityfocuscom/bid/9751/info Serv-U FTP Server has been reported prone to a remote stack based buffer overflow vulnerability when handling time zone arguments passed to the MDTM FTP command The problem exists due to insufficient bounds checking Ultimately an attacker may leverage this issue to have arbitrary instructio ...
/* ex_servuc - Serv-U FTPD 3x/4x/5x "MDTM" Command remote overflow exploit * * Copyright (c) SST 2004 All rights reserved * * Public version * * BUG find by bkbll (bkbll@cnhonkercom), cool! :ppPPppPPPpp :D * * code by Sam and 2004/01/07 * <chen_xiaobo@venustechcomcn> * <Sam@0x557org> * ...