CVE-2026-28312

Summary

SolarWinds Serv-U is affected by a privilege escalation vulnerability. This would elevate a group’s access to system administrator and allow code execution as root. The impact is lower in Windows deployments.

Affected Software

VendorProductVersion RangeStatus
SolarWindsServ-U15.5.4 HF1 and belowaffected

Weaknesses

  • CWE-285: CWE-285 Improper Authorization

References