Denial of Service Vulnerability in SolarWinds TFTP Server 10.4.0.10
CVE-2010-2115

Currently unrated

Key Information:

Vendor

Solarwinds

Vendor
CVE Published:
28 May 2010

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC๐ŸŸฃ EPSS 82%

What is CVE-2010-2115?

The SolarWinds TFTP Server version 10.4.0.10 suffers from a vulnerability that allows remote attackers to create a denial of service scenario. This can be executed through a specifically crafted read request, which prevents the server from accepting new connections, thereby causing significant disruptions for affected users.

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

EPSS Score

82% chance of being exploited in the next 30 days.

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.