VendorsSolarwindsserv-uany version
Vulnerabilities

Solarwinds Serv-U any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

50CVEs
CVE-2020-15575
SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194.
Published 2020-07-07 · Modified
6.1EPSS 0.015
CVE-2020-15573
SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421.
Published 2020-07-07 · Modified
6.1EPSS 0.015
CVE-2024-28072
Arbitrary File Overwrite Vulnerability
Published 2024-05-03 · Analyzed
5.7EPSS 0.006
CVE-2020-28001
SolarWinds Serv-U before 15.2.2 allows Authenticated Stored XSS.
Published 2021-02-03 · Modified
5.4EPSS 0.038
CVE-2021-32604
Share/IncomingWizard.htm in SolarWinds Serv-U before 15.2.3 mishandles the user-supplied SenderEmail parameter, aka "Share URL XSS."
Published 2021-05-11 · Modified
5.4EPSS 0.017
CVE-2020-35482
SolarWinds Serv-U before 15.2.2 allows authenticated reflected XSS.
Published 2021-02-03 · Modified
5.4EPSS 0.015
CVE-2024-45712
SolarWinds Serv-U Client-Side Cross-Site Scripting Vulnerability
Published 2025-04-15 · Analyzed
5.4EPSS 0.004
CVE-2021-35247
Improper Input Validation Vulnerability in Serv-U
Published 2022-01-07 · Analyzed
5.3KEVEPSS 0.035
CVE-2024-45714
SolarWinds Serv-U Stored XSS Vulnerability
Published 2024-10-16 · Analyzed
4.8EPSS 0.009
CVE-2021-35249
Domain Admin Broken Access Control
Published 2022-05-17 · Modified
4.3EPSS 0.007
← Prev2 / 2