Loading HuntDB...

SolarWinds Serv-U Path Traversal Vulnerability

Added July 17, 2024 Due Aug. 7, 2024 CVE-2024-28995
Overdue SolarWinds / Serv-U CWE-22

Description

SolarWinds Serv-U contains a path traversal vulnerability that allows an attacker access to read sensitive files on the host machine.

Required Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 1 week ago