Known vulnerabilities in Serv-U FTP Server 15.4.2 Hotfix 1 - page 2

Vendor: SolarWinds
Version: 15.4.2 Hotfix 1
Software CPE: cpe:2.3:a:solarwinds:serv-u_ftp_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 27
Public exploits: 2
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Serv-U FTP Server version 15.4.2 Hotfix 1 Serv-U FTP Server 15.4.2 Hotfix 1 is affected by 27 vulnerabilities: 1 critical, 2 high, 5 medium, 19 low Critical High Medium Low

Vulnerabilities (27)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU107461 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45712
CWE-79 Low
No
No
15.5.1 15.04.2025 SB2025041528
#VU98773 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45714
CWE-79 Low
No
No
15.5 17.10.2024 SB2024101733
#VU98772 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-45711
CWE-22 Medium
No
No
15.5 17.10.2024 SB2024101733
#VU93424 - Out-of-bounds read
CVE-2024-5535
CWE-125 Low
Public exploit available
No
15.5 27.06.2024 SB2024062720
SB20240717135
SB2024072154
and 154 more
#VU91290 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-28995
CWE-22 Critical
Public exploit available
Exploited
15.4.2 Hotfix 2 07.06.2024 SB2024060722
#VU89861 - Use After Free
CVE-2024-4741
CWE-416 Medium
No
No
15.5 29.05.2024 SB2024052912
SB2024060803
SB2024060804
and 87 more
#VU89624 - Resource Management Errors
CVE-2024-4603
CWE-399 Low
No
No
15.5 17.05.2024 SB2024051715
SB2024052732
SB2024060735
and 65 more


Showing elements 21 - 40 out of 27