Serv-u
This hub aggregates every CVE we track for Serv-u, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
44
CVEs tracked
10
Critical
19
High
4
In CISA KEV
Severity distribution
HIGH19MEDIUM14CRITICAL10LOW1
Monthly trend
0
0
0
2
0
0
0
0
0
1
0
0
0
0
0
0
3
0
0
4
0
0
0
1
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Serv-u.
- CVE-2026-28318SolarWinds Serv-U Unauthenticated Denial of Service VulnerabilityKEV7.5
- CVE-2025-40541SolarWinds Serv-U Insecure Direct Object Reference (IDOR) Remote Code Execution Vulnerability9.1
- CVE-2025-40540SolarWinds Serv-U Type Confusion Remote Code Execution Vulnerability9.1
- CVE-2025-40539SolarWinds Serv-U Type Confusion Remote Code Execution Vulnerability9.1
- CVE-2025-40538SolarWinds Serv-U Broken Access Control Remote Code Execution Vulnerability9.1
- CVE-2025-40549SolarWinds Serv-U Path Restriction Bypass Vulnerability9.1
- CVE-2025-40548SolarWinds Serv-U Broken Access Control - Remote Code Execution Vulnerability9.1
- CVE-2025-40547SolarWinds Serv-U Logic Abuse - Remote Code Execution Vulnerability9.1
- CVE-2024-45712SolarWinds Serv-U Client-Side Cross-Site Scripting Vulnerability2.6
- CVE-2024-45711SolarWinds Serv-U FTP Service Directory Traversal Remote Code Execution Vulnerability7.5
- CVE-2024-45714SolarWinds Serv-U Stored XSS Vulnerability4.8
- CVE-2024-28995SolarWinds Serv-U L Directory Transversal VulnerabilityKEV8.6
- CVE-2024-28072Arbitrary File Overwrite Vulnerability5.7
- CVE-2024-28073SolarWinds Serv-U Directory Traversal Remote Code Execution Vulnerability 8.4
- CVE-2023-40053HTML injection Vulnerability in Serv-U 15.45.0
Product normalization is registry-driven with AI assist and human review. How it works