SolarWinds Releases Patches For High-Severity
ID: 7315df6c-78aa-5b50-bff4-f262e0ca2fdf
STIX ID: report--7315df6c-78aa-5b50-bff4-f262e0ca2fdf
Feed Name: Cyble Blog
SolarWinds issued an advisory for four newly disclosed vulnerabilities—three high-severity (CVE-2024-45711, CVE-2024-45710, CVE-2024-45715) and one medium (CVE-2024-45714)—affecting SolarWinds Platform (≤2024.2.1) and Serv-U (≤15.4.2 / 15.4.2.3). Impacts include XSS, directory traversal that may enable remote code execution for authenticated users, and an uncontrolled search path that can enable local privilege escalation; the advisory urges prompt patching, network segmentation, monitoring, and incident response planning.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
