CVE Feed

    Dashboard / CVE / CVE-2024-45711

    CVE-2024-45711

    SolarWinds Serv-U is vulnerable to a directory traversal vulnerability where remote code execution is possible depending on privileges given to the authenticated user. This issue requires a user to be authenticated and this is present when software environment variables are abused. Authentication is required for this vulnerability

    Published:Oct 16, 2024
    Last Modified:Oct 17, 2024
    EPS:Oct 16, 2024
    EPSS Score:0.03091
    CVSS Score:7.5

    Affected Products

    Vendor
    Solarwinds
    Product
    Serv-u

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High