Denial of Service Vulnerability in SolarWinds TFTP Server
CVE-2009-3115
Currently unrated
Key Information:
- Vendor
Solarwinds
- Status
- Vendor
- CVE Published:
- 9 September 2009
Badges
๐พ Exploit Exists๐ก Public PoC
What is CVE-2009-3115?
The SolarWinds TFTP Server version 9.2.0.111 and earlier is susceptible to a denial of service issue where attackers can exploit crafted Option Acknowledgement (OACK) requests. This vulnerability enables remote users to disrupt the service, potentially causing it to stop functioning entirely. Users and administrators are advised to upgrade to the latest version to mitigate this risk.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.