Solarwinds Updates
2807Warning Date
Severity Level
Warning Number
Target Sector
8 February, 2021
● Critical
2021-2431
All
Description:
Solarwinds has released security updates to address several vulnerabilities in the following products:
- SolarWinds Orion-based
- Serv-U FTP
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Escalation of privilege
- Cross-site scripting (XSS)
- Code injection
- Directory Traversal
- Execute arbitrary code -remotely
Best practice and Recommendations:
The CERT team encourages users to review Solarwinds security advisory and apply the necessary updates: