PT-2021-3760 · Solarwinds · Serv-U Managed File Transfer+1
Published
2021-07-09
·
Updated
2026-02-26
·
CVE-2021-35211
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SolarWinds Serv-U Managed File Transfer and Serv-U Secure FTP for Windows versions prior to 15.2.3 HF2
Description
A remote code execution vulnerability in the SolarWinds Serv-U product allows a threat actor to gain privileged access to the machine hosting Serv-U. The vulnerability is related to a Remote Memory Escape Vulnerability and can be exploited by sending a crafted request to the SSH server. The issue is associated with the lack of address space layout randomization (ASLR) protection in the Serv-U binary files.
Recommendations
For versions prior to 15.2.3 HF2, update to version 15.2.3 HF2 or later to resolve the issue. As a temporary workaround, consider restricting access to the SSH server or disabling the vulnerable Serv-U service until a patch is applied. Avoid using the default configuration for SSH servers, as it may be easily exploited.
Exploit
Fix
Buffer Overflow
Memory Corruption
Exposure of Resource to Wrong Sphere
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Serv-U Managed File Transfer
Serv-U Secure Ftp