RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: SolarWinds Serv-U Vulnerability Under Active Attack - Patch Immediately
Post by: ixsky on
SolarWinds Serv-U Vulnerability Under Active Attack - Patch Immediately

A recently patched high-severity flaw impacting SolarWinds Serv-U file transfer software is being actively exploited by malicious actors in the wild.
The vulnerability, tracked as CVE-2024-28995 (CVSS score: 8.6), concerns a directory transversal bug that could allow attackers to read sensitive files on the host machine.
Affecting all versions of the software prior to and including Serv-U 15.4.2

Source: SolarWinds Serv-U Vulnerability Under Active Attack - Patch Immediately (https://thehackernews.com/2024/06/solarwinds-serv-u-vulnerability-under.html)