CVE-2011-5033: Configserver Security Firewall

Medium severity, CVSS 4.4. EPSS: 0.7% chance of exploitation in the next 30 days.

Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin server, allows local users to cause a denial of service (crash) via a long string in an admin.list file.

Affected products

  • Configserver Configserver Security Firewall: up to and including 5.42; version 5.00 only; version 5.01 only; version 5.02 only; version 5.03 only; version 5.04 only; …

Published 2011-12-29. Last modified 2026-06-16.