logo

Patch these 4 critical, make-me-root SolarWinds bugs ASAP

ID: 8811e7ea-04b1-5043-a530-c50a44b15d57

STIX ID: report--8811e7ea-04b1-5043-a530-c50a44b15d57

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2026-02-24

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Four critical vulnerabilities in SolarWinds Serv-U (CVE-2025-40538, CVE-2025-40539, CVE-2025-40540, CVE-2025-40541) — all rated CVSS 9.1 — can lead to remote code execution as root; SolarWinds has released Serv-U 15.5.4 to patch them, the issues require administrative privileges to exploit, and no active exploitation of these CVEs has been observed though SolarWinds products remain high-value targets and prompt patching is strongly recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.