Vulnerability CVE-2024-45711


Published: 2024-10-16

Description:
SolarWinds Serv-U is vulnerable to a directory traversal vulnerability where remote code execution is possible depending on privileges given to the authenticated user. This issue requires a user to be authenticated and this is present when software environment variables are abused. Authentication is required for this vulnerability

Type:

CWE-22

(Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'))

 References:
https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-45711

Copyright 2024, cxsecurity.com

 

Back to Top