SolarWinds.Serv-U.InternalDir.Path.Traversal
Description
This indicates an attack attempt to exploit a Directory Traversal Vulnerability in SolarWinds Serv-U.
The vulnerability is due to improper validation user-supplied inputs. A remote, authenticated attacker could exploit this vulnerability by sending crafted requests to the target server. Successful exploitation could result in reading arbitrary files on the target server.
Affected Products
SolarWinds Serv-U version prior to 15.4.2 HF 2
Impact
Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
https://www.solarwinds.com/trust-center/security-advisories/cve-2024-28995
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2024-07-25 | 28.833 |
Modified
|
Name:SolarWinds. Serv-U. InternalDir. Directory. Traversal:SolarWinds. Serv-U. InternalDir. Path. Traversal |
| 2024-07-04 | 28.821 |
Modified
|
Default_action:pass:drop |
| 2024-07-03 | 28.820 |
Modified
|
Default_action:drop:pass |
| 2024-07-03 | 28.819 |
Modified
|
Default_action:pass:drop |
| 2024-06-27 | 28.816 |
New
|