Vulnerabilities
Vulnerable Software
Solarwinds:  >> Serv-U  >> 15.1.7  Security Vulnerabilities
SolarWinds Serv-U before 15.2.2 allows Unauthenticated Macro Injection.
CVSS Score
9.8
EPSS Score
0.045
Published
2021-02-03
SolarWinds Serv-U before 15.2.2 allows authenticated reflected XSS.
CVSS Score
5.4
EPSS Score
0.043
Published
2021-02-03
SolarWinds Serv-U before 15.2.2 allows Authenticated Directory Traversal.
CVSS Score
6.5
EPSS Score
0.019
Published
2021-02-03
SolarWinds Serv-U before 15.2.2 allows Authenticated Stored XSS.
CVSS Score
5.4
EPSS Score
0.016
Published
2021-02-03
SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421.
CVSS Score
6.1
EPSS Score
0.033
Published
2020-07-07
SolarWinds Serv-U File Server before 15.2.1 mishandles the Same-Site cookie attribute, aka Case Number 00331893.
CVSS Score
7.5
EPSS Score
0.029
Published
2020-07-07
SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194.
CVSS Score
6.1
EPSS Score
0.033
Published
2020-07-07
SolarWinds Serv-U File Server before 15.2.1 allows information disclosure via an HTTP response.
CVSS Score
7.5
EPSS Score
0.029
Published
2020-07-07


Contact Us

Shodan ® - All rights reserved