CVE-2024-28073: SolarWinds Serv-U

High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.

SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability requires a highly privileged account to be exploited.

Affected products

  • SolarWinds Serv-U: before 15.4.2 (fixed in 15.4.2)

Published 2024-04-17. Last modified 2026-06-17.