CyberRota Analysis
AI-GeneratedSolarWinds Serv-U on Windows is vulnerable to an insecure direct object reference (IDOR) flaw that could allow an attacker with domain administrator access to execute arbitrary code remotely. While the impact is somewhat mitigated in Windows environments, the critical severity of this vulnerability (CVSS 9.1) necessitates immediate attention from organizations utilizing this software, particularly those with elevated privileges. Administrators should prioritize patching to prevent potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution. Domain administrator access is required. The impact is lower in Windows deployments.
Related CVEs
Other vulnerabilities affecting the same vendor(s)