SolarWinds Serv-U FTP 15.1.6 Privilege Escalation
Posted by deepcore on February 2, 2019 – 12:51 pm
SolarWinds Serv-U FTP Server version 15.1.6 is vulnerable to privilege escalation from remote authenticated users by leveraging the CSV user import function. This leads to obtaining remote code execution under the context of the Windows SYSTEM account in a default installation.
Post a reply
You must be logged in to post a comment.