Skip to main content

Vendor archive

solarwinds CVEs

Beta · best-effort

335 CVEs tagged to vendor solarwinds72 Critical, 130 High, 128 Medium, 5 Low, 0 Unrated.

CVE-2004-2533

Published Dec 31, 2004

Serv-U FTP Server 4.1 (possibly 4.0) allows remote attackers to cause a denial of service (application crash) via a SITE CHMOD command with a "\\...\" followed by a short string,…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0330

Published Nov 23, 2004

Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time zone argument to the MDTM command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1675

Published Sep 11, 2004

Serv-U FTP server 4.x and 5.x allows remote attackers to cause a denial of service (application crash) via a STORE UNIQUE (STOU) command with an MS-DOS device name argument such a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1992

Published Apr 20, 2004

Buffer overflow in Serv-U FTP server before 5.0.0.6 allows remote attackers to cause a denial of service (crash) via a long -l parameter, which triggers an out-of-bounds read.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1852

Published Mar 23, 2004

DameWare Mini Remote Control 3.x before 3.74 and 4.x before 4.2 transmits the Blowfish encryption key in plaintext, which allows remote attackers to gain sensitive information.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1542

Published Mar 31, 2003

SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP datagram, possibly triggering a buffer overflow.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2393

Published Dec 31, 2002

Serv-U FTP server 3.0, 3.1 and 4.0.0.4 does not accept new connections while validating user folder access rights, which allows remote attackers to cause a denial of service (no n…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1209

Published Nov 4, 2002

Directory traversal vulnerability in SolarWinds TFTP Server 5.0.55, and possibly earlier, allows remote attackers to read arbitrary files via "..\" (dot-dot backslash) sequences i…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1463

Published Nov 19, 2001

The remote administration client for RhinoSoft Serv-U 3.0 sends the user password in plaintext even when S/KEY One-Time Password (OTP) authentication is enabled, which allows remo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0054

Published Feb 16, 2001

Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbitrary files by appending a string such as "/..%20." to a CD…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 326-335 of 335 CVEsPage 14 of 14