Skip to main content

Vendor/product archive

solarwinds / serv-u CVEs

Beta · best-effort

55 CVEs tagged to solarwinds / serv-u23 Critical, 17 High, 14 Medium, 1 Low, 0 Unrated.

CVE-2020-15575

Published Jul 7, 2020

SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15574

Published Jul 7, 2020

SolarWinds Serv-U File Server before 15.2.1 mishandles the Same-Site cookie attribute, aka Case Number 00331893.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15573

Published Jul 7, 2020

SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-10241

Published May 16, 2018

A denial of service vulnerability in SolarWinds Serv-U before 15.1.6 HFv1 allows an authenticated user to crash the application (with a NULL pointer dereference) via a specially c…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-10240

Published May 16, 2018

SolarWinds Serv-U MFT before 15.1.6 HFv1 assigns authenticated users a low-entropy session token that can be included in requests to the application as a URL parameter in lieu of…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort
Showing 51-55 of 55 CVEsPage 3 of 3