SolarWinds Serv-U-Sicherheitslücke wird aktiv angegriffen - Patch sofort ausführen

Teilen:

A recently patched high-severity flaw impacting SolarWinds Serv-U file transfer software is being actively exploited by malicious actors in the wild.

The vulnerability, tracked as CVE-2024-28995 (CVSS score: 8.6), concerns a directory transversal bug that could allow attackers to read sensitive files on the host machine.

Affecting all versions of the software prior to and including Serv-U 15.4.2 HF 1, it was addressed by the company in version Serv-U 15.4.2 HF 2 (15.4.2.157) released earlier this month.

Cybersecurity
The list of products susceptible to CVE-2024-28995 is below –

Serv-U FTP Server 15.4
Serv-U Gateway 15.4
Serv-U MFT Server 15.4, and
Serv-U File Server 15.4
Security researcher Hussein Daher of Web Immunify has been credited with discovering and reporting the flaw. Following the public disclosure, additional technical details and a proof-of-concept (PoC) exploit have since been made available.

Cybersecurity firm Rapid7 described the vulnerability as trivial to exploit and that it allows external unauthenticated attackers to read any arbitrary file on disk, including binary files, assuming they know the path to that file and it’s not locked.

“High-severity information disclosure issues like CVE-2024-28995 can be used in smash-and-grab attacks where adversaries gain access to and attempt to quickly exfiltrate data from file transfer solutions with the goal of extorting victims,” it said.

“File transfer products have been targeted by a wide range of adversaries the past several years, including ransomware groups.”

Cybersecurity
Indeed, according to threat intelligence firm GreyNoise, threat actors have already begun to conduct opportunistic attacks weaponizing the flaw against its honeypot servers to access sensitive files like /etc/passwd, with attempts also recorded from China.

With previous flaws in Serv-U software exploited by threat actors, it’s imperative that users apply the updates as soon as possible to mitigate potential threats.

“The fact that attackers are using publicly available PoCs means the barrier to entry for malicious actors is incredibly low,” Naomi Buckwalter, director of product security at Contrast Security, said in a statement shared with The Hacker News.

“Successful exploitation of this vulnerability could be a stepping stone for attackers. By gaining access to sensitive information like credentials and system files, attackers can use that information to launch further attacks, a technique called ‘chaining.’ This can lead to a more widespread compromise, potentially impacting other systems and applications.”

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
7:48 am, Juni 27, 2025
Wetter-Symbol 15°C
L: 15° | H: 17°
broken clouds
Luftfeuchtigkeit: 78 %
Druck: 1020 mb
Wind: 6 mph S
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 76%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:45 am
Sonnenuntergang: 9:21 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
15° | 17°°C 0 mm 0% 13 mph 75 % 1021 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
18° | 29°°C 0 mm 0% 11 mph 91 % 1025 mb 0 mm/h
So. Juni 29 10:00 pm
Wetter-Symbol
18° | 32°°C 0 mm 0% 6 mph 78 % 1025 mb 0 mm/h
Mo. Juni 30 10:00 pm
Wetter-Symbol
22° | 36°°C 0.2 mm 20% 8 mph 65 % 1021 mb 0 mm/h
Di. Juli 01 10:00 pm
Wetter-Symbol
22° | 31°°C 0 mm 0% 9 mph 70 % 1015 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
17° | 19°°C 0 mm 0% 11 mph 75 % 1020 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
21° | 24°°C 0 mm 0% 12 mph 62 % 1020 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
27° | 27°°C 0 mm 0% 13 mph 39 % 1019 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
25° | 25°°C 0 mm 0% 13 mph 38 % 1019 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
21° | 21°°C 0 mm 0% 10 mph 63 % 1021 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
19° | 19°°C 0 mm 0% 9 mph 83 % 1022 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 9 mph 91 % 1022 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
20° | 20°°C 0 mm 0% 8 mph 79 % 1023 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€91,807.31
-0.42%
Ethereum(ETH)
€2,090.75
-1.55%
Fesseln(USDT)
€0.86
-0.01%
XRP(XRP)
€1.79
-4.34%
Solana(SOL)
€120.61
-2.74%
USDC(USDC)
€0.86
-0.01%
Dogecoin(DOGE)
€0.138030
-2.20%
Shiba Inu(SHIB)
€0.000009
-3.25%
Pepe(PEPE)
€0.000008
-3.02%
Nach oben scrollen