CVE-2024-28995highunder attackCWE-22

CVE-2024-28995: high-severity vulnerability in SolarWinds Serv-U

SolarWinds Serv-U L Directory Transversal Vulnerability

Published · Updated

100Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 8.6epss 100%
from disclosure to weapon8 days
Published on NVDJun 6
1st PoC+8d
CISA KEV+41d
exploitation probability
100%top 1% of all CVEs
observed exploitation
yesCISA + VulnCheck
22 public exploit(s)
Action required by CISAfederal deadline: 2024-08-07

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

In short

SolarWinds Serv-U has a flaw that lets attackers bypass directory restrictions and read sensitive files on the server. This is dangerous because it exposes confidential data like configuration files and credentials.

Technical detail

A path traversal vulnerability in SolarWinds Serv-U allows an attacker to use specially crafted input sequences (e.g., ../ patterns) to escape intended directory boundaries and access arbitrary files with the privileges of the Serv-U process. Exploitation requires network access to the Serv-U service; successful exploitation enables unauthorized information disclosure of sensitive files.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive files on the host machine.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.