PT-2021-11440 · Solarwinds · Serv-U
Jack Misiura
·
Published
2021-02-03
·
Updated
2021-02-18
·
CVE-2020-27994
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
SolarWinds Serv-U versions prior to 15.2.2
Description:
The issue allows authenticated directory traversal.
Recommendations:
For versions prior to 15.2.2, update to version 15.2.2 or later to resolve the issue.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Serv-U