Description

Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access violation in the __output_1() function of sfsservice.exe. This results in a denial of service (DoS) condition.

INFO

Published Date :

2025-08-20T15:40:31.746Z

Last Modified :

2026-04-07T14:02:17.948Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2011-10029 vulnerability.

Vendors Products
Flexbyte
  • Solar Ftp Server

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability