SolarWinds Product Security Update Advisory (CVE-2024-45711)

Overview

 

SolarWinds Products has released a security update that fixes vulnerabilities in products supplied by SolarWinds Products. Users of affected products are advised to update to the latest version.

 

Affected Products

 

CVE-2024-45711

  • SolarWinds Serv-U versions: ~ 15.4.2 (inclusive)

 

 

Resolved Vulnerabilities

 

Directory traversal vulnerability in SolarWinds Serv-U that could allow remote code execution via authenticated users (CVE-2024-45711)

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2024-45711

  • SolarWinds Serv-U version: 15.5

 

 

Referenced Sites

 

[1] CVE-2024-45711 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-45711

[2] Serv-U FTP Service Directory Traversal Remote Code Execution Vulnerability (CVE-2024-45711)

https://www.solarwinds.com/trust-center/security-advisories/cve-2024-45711