vulnerability

SolarWinds Serv-U: CVE-2023-35179: MFA/2FA Bypass Vulnerability in Serv-U 15.4

Severity
8
CVSS
(AV:N/AC:M/Au:M/C:C/I:C/A:C)
Published
Aug 4, 2023
Added
Aug 1, 2025
Modified
Aug 1, 2025

Description

A vulnerability has been identified within Serv-U 15.4 that, if exploited, allows an actor to bypass multi-factor/two-factor authentication. The actor must have administrator-level access to Serv-U to perform this action.

Solution

solarwinds-serv-u-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.