vulnerability

SolarWinds Serv-U: CVE-2024-28072: Arbitrary File Overwrite Vulnerability

Severity
6
CVSS
(AV:A/AC:L/Au:M/C:P/I:C/A:P)
Published
May 3, 2024
Added
Aug 1, 2025
Modified
Aug 1, 2025

Description

A highly privileged account can overwrite arbitrary files on the system with log output. The log file path tags were not sanitized properly.

Solution

solarwinds-serv-u-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.