vendor:
Serv-U
by:
7.5
CVSS
HIGH
Denial-of-Service, Security Bypass
CWE
Product Name: Serv-U
Affected Version From: 11.1.0.3
Affected Version To: 11.1.0.3
Patch Exists: YES
Related CWE:
CPE: a:solarwinds:serv-u:11.1.0.3
Platforms Tested:
Serv-U Denial-of-Service and Security Bypass Vulnerabilities
The Serv-U application is prone to a denial-of-service vulnerability and a security-bypass vulnerability. Attackers can exploit these vulnerabilities to perform denial-of-service attacks or gain unauthorized access to the affected application.
Mitigation:
Update to Serv-U version 11.1.0.4 or later to address these vulnerabilities.