Back

MEDIUM

Arbitrary File Overwrite Vulnerability

Published May 3, 2024

Description

A highly privileged account can overwrite arbitrary files on the system with log output. The log file path tags were not sanitized properly.

Affected products

Remediation

Vendor solution

SolarWinds recommends that customers upgrade to SolarWinds Serv-U version 15.4.2 Hotfix 1 as soon as it becomes available.

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner SolarWinds
Published May 3, 2024
Updated Aug 2, 2024
Reserved Mar 1, 2024
CISA Vulnrichment
Updated May 3, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner SolarWinds
Published May 3, 2024
Updated Aug 2, 2024
Exploited since n/a
EUVD-2024-25239