Korean
<< Back
VID 16147
Severity 30
Port 21
Protocol TCP
Class FTP
Detailed Description A version of Serv-U FTP which is earlier than 15.0.0.0 is detected as installed on the host. RhinoSoft Serv-U FTP is an FTP server for Microsoft Windows operating systems.
Serv-U FTP versions prior to 15.0.0.0 are vulnerable to multiple vulnerabilities.

- An unspecified error exists related to SSL that can be exploited to cause a denial of service.
- An unspecified error exists when using the 'Require Fully Qualified Membership' LDAP login settings.

* Note: This check solely relied on the version number of the remote FTP server to assess this vulnerability, so this might be a false positive.

* References:
http://www.serv-u.com/releasenotes/

* Platforms Affected:
Rhino Software, Inc., Serv-U FTP Server before 15.0.0.0
Microsoft Windows Any version
Recommendation Upgrade to latest version of Serv-U (15.0.0.0 or later), available from Serv-U Web site at http://www.serv-u.com/
Related URL (CVE)
Related URL 61903 (SecurityFocus)
Related URL (ISS)