← All CVEs

CVE-2004-2111

high · 8.5

Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.

8.5
CVSS
86.9%
EPSS (exploit prob.)
100th
EPSS percentile
2004-12-31
Published

AV:N/AC:M/Au:S/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
solarwindsserv-u_file_server<= 4.1.0.3
solarwindsserv-u_file_server3.0.0.16
solarwindsserv-u_file_server3.0.0.17
solarwindsserv-u_file_server3.1.0.0
solarwindsserv-u_file_server3.1.0.1
solarwindsserv-u_file_server3.1.0.3
solarwindsserv-u_file_server4.0.0.4
solarwindsserv-u_file_server4.1.0.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-2111