Vulnerabilities
Vulnerable Software
SolarWinds Serv-U before 15.2 is affected by Cross Site Scripting (XSS) via the HTTP Host header.
CVSS Score
6.1
EPSS Score
0.01
Published
2021-05-05
Directory traversal vulnerability in Serv-U FTP Server before 11.1.0.5 allows remote authenticated users to read and write arbitrary files, and list and create arbitrary directories, via a "..:/" (dot dot colon forward slash) in the (1) list, (2) put, or (3) get commands.
CVSS Score
9.0
EPSS Score
0.114
Published
2011-12-14
Directory traversal vulnerability in Serv-U before 9.2.0.1 allows remote authenticated users to read arbitrary files via unspecified vectors.
CVSS Score
4.0
EPSS Score
0.004
Published
2010-04-27
Stack-based buffer overflow in the TEA decoding algorithm in RhinoSoft Serv-U FTP server 7.0.0.1, 9.0.0.5, and other versions before 9.1.0.0 allows remote attackers to execute arbitrary code via a long hexadecimal string.
CVSS Score
10.0
EPSS Score
0.779
Published
2009-11-20


Contact Us

Shodan ® - All rights reserved