Solarwinds

Serv-u

55 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.34%
  • Veröffentlicht 21.07.2026 15:34:26
  • Zuletzt bearbeitet 24.07.2026 17:58:27

SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevated into an administrator group. The impact is lower in Windows deployments.

  • EPSS 0.34%
  • Veröffentlicht 21.07.2026 15:34:09
  • Zuletzt bearbeitet 24.07.2026 17:59:24

SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevate their privileges to a system administrator. The impact is lower in Windows deployments.

  • EPSS 0.55%
  • Veröffentlicht 21.07.2026 15:33:55
  • Zuletzt bearbeitet 24.07.2026 17:41:20

SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact i...

Medienbericht
  • EPSS 0.55%
  • Veröffentlicht 21.07.2026 15:32:04
  • Zuletzt bearbeitet 24.07.2026 17:33:31

SolarWinds Serv-U is affected by a remote code execution vulnerability that, when exploited, can allow the arbitrary execution of code remotely as root. The impact is lower in Windows deployments.

Medienbericht
  • EPSS 0.55%
  • Veröffentlicht 21.07.2026 15:31:30
  • Zuletzt bearbeitet 24.07.2026 17:31:48

SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation and remote code execution as root. This issue requires group administrator access. The impact is lower in Windows deployme...

Warnung Medienbericht
  • EPSS 8.35%
  • Veröffentlicht 04.06.2026 14:05:58
  • Zuletzt bearbeitet 22.07.2026 20:10:00

SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication using Content-Encoding: deflate. Mitigation steps are provided to secure customer environments in the SolarWinds Trust Center if ...

Medienbericht
  • EPSS 0.57%
  • Veröffentlicht 24.02.2026 07:41:49
  • Zuletzt bearbeitet 24.02.2026 17:56:16

An Insecure Direct Object Reference (IDOR) vulnerability exists in Serv-U, which when exploited, gives a malicious actor the ability to execute native code as a privileged account. This issue requires administrative privileges to abuse. On Windows d...

Medienbericht
  • EPSS 0.45%
  • Veröffentlicht 24.02.2026 07:41:17
  • Zuletzt bearbeitet 24.02.2026 17:54:39

A type confusion vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to execute arbitrary native code as privileged account. This issue requires administrative privileges to abuse. On Windows deployments, the ris...

Medienbericht
  • EPSS 0.45%
  • Veröffentlicht 24.02.2026 07:40:46
  • Zuletzt bearbeitet 24.02.2026 17:53:38

A type confusion vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to execute arbitrary native code as privileged account. This issue requires administrative privileges to abuse. On Windows deployments, the ris...

Medienbericht
  • EPSS 0.5%
  • Veröffentlicht 24.02.2026 07:40:12
  • Zuletzt bearbeitet 24.02.2026 17:51:27

A broken access control vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to create a system admin user and execute arbitrary code as a privileged account via domain admin or group admin privileges. This issue ...