SolarWinds Serv-U Vulnerable to Directory Traversal Remote Code Execution
CVE-2024-28073
7.2HIGH
What is CVE-2024-28073?
A remote code vulnerability has been identified in SolarWinds Serv-U, which is susceptible to directory traversal issues. This security flaw enables attackers with high levels of privilege to manipulate file paths, potentially leading to unauthorized command execution. The exploitation requires access to a highly privileged user account, emphasizing the necessity for stringent access controls and regular security audits. Organizations leveraging SolarWinds Serv-U must ensure they are implementing the latest security patches to mitigate associated risks. For more information, please refer to the official advisory.
Affected Version(s)
ServU 15.4.1 and previous versions