Korean
<< Back
VID 16133
Severity 30
Port 21
Protocol TCP
Class FTP
Detailed Description The installed version of Serv-U 7.x is earlier than 7.2.0.1 and thus
reportedly contains an SFTP bug in which directory creation and
logging SFTP commands could lead to an application crash.


* Note: This check solely relied on the version number of the remote FTP server to assess this vulnerability, so this might be a false positive.

* References:
http://www.rhinosoft.com/KnowledgeBase/KBArticle.asp?RefNo=1769
http://www.serv-u.com/releasenotes/

* Platforms Affected:
Rhino Software, Inc., Serv-U FTP Server 7.2.0.1 and prior
Microsoft Windows Any version
Recommendation Upgrade to latest version of Serv-U (7.2.0.1 or later), available from Serv-U Web site at http://www.serv-u.com/
Related URL CVE-2008-3731 (CVE)
Related URL 30739 (SecurityFocus)
Related URL (ISS)