Количество 3
Количество 3
CVE-2026-28305
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact is lower in Windows deployments.
GHSA-wv2m-rg59-7rh5
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact is lower in Windows deployments.
BDU:2026-14358
Уязвимость программного обеспечения для безопасного обмена и передачи файлов SolarWinds Serv-U, связанная с обходом авторизации посредством использования ключа, контролируемого пользователем, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-28305 SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact is lower in Windows deployments. | CVSS3: 9.1 | 1% Низкий | около 2 месяцев назад | |
GHSA-wv2m-rg59-7rh5 SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact is lower in Windows deployments. | CVSS3: 9.1 | 1% Низкий | около 2 месяцев назад | |
BDU:2026-14358 Уязвимость программного обеспечения для безопасного обмена и передачи файлов SolarWinds Serv-U, связанная с обходом авторизации посредством использования ключа, контролируемого пользователем, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.1 | 1% Низкий | около 2 месяцев назад |
Уязвимостей на страницу