A vulnerability has been identified within Serv-U 15.4 that allows an authenticated actor to insert content on the file share function feature of Serv-U, which could be used maliciously.
| Software | From | Fixed in |
|---|---|---|
| solarwinds / serv-u | 15.4.0 | 15.4.0.x |
| solarwinds / serv-u | 15.4.0-hotfix1 | 15.4.0-hotfix1.x |
| solarwinds / serv-u | 15.4.0-hotfix2 | 15.4.0-hotfix2.x |