Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2019-12769
SolarWinds Serv-U Managed File Transfer (MFT) Web client before 15.1.6 Hotfix 2 is vulnerable to Cross-Site Request Forgery in the file upload functionality via ?Command=Upload with the Dir and File parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.006
EPSS Ranking
69.2%
CVSS Severity
CVSS v3 Score
8.8
CVSS v2 Score
6.8
References
https://medium.com/%40clod81/cve-2019-12769-solarwinds-serv-u-managed-file-transfer-mft-web-client-15-1-6-a2dab98d668d
https://support.solarwinds.com/SuccessCenter/s/article/Serv-U-15-1-6-HotFix-2
https://medium.com/%40clod81/cve-2019-12769-solarwinds-serv-u-managed-file-transfer-mft-web-client-15-1-6-a2dab98d668d
https://support.solarwinds.com/SuccessCenter/s/article/Serv-U-15-1-6-HotFix-2
Products affected by CVE-2019-12769
Solarwinds
»
Serv-U Managed File Transfer
»
Version:
15.1.5
cpe:2.3:a:solarwinds:serv-u_managed_file_transfer:15.1.5
Solarwinds
»
Serv-U Managed File Transfer
»
Version:
15.1.6
cpe:2.3:a:solarwinds:serv-u_managed_file_transfer:15.1.6
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved