0x

guest@0xbase ~$ read-only mode. Posting requires EU location.

SolarWinds Serv-U: DoS vulnerability CVE-2026-28318 actively exploited (heise.de)

· 52d ago · Report · Spotlight this ·
0xBASE INTEL BRIEF
  • CVE-2026-28318: DoS in SolarWinds Serv-U, CVSS 7.5
  • Remote, unauthenticated exploitation via POST requests with Deflate encoding
  • CISA reports active exploitation; update to version 15.5.4 HF1 or deploy WAF filters

"A denial-of-service vulnerability (CVE-2026-28318) in SolarWinds Serv-U is being actively exploited, according to CISA. The flaw allows unauthenticated attackers to crash the service via crafted POST requests with Deflate encoding. SolarWinds released version 15.5.4 HF1. Administrators should update or apply WAF rules to block malicious requests."

#DoS attack #FTP security #CISA alert

Discussion Matrix

0 segments

no comments yet.