Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-28316

SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation to a system administrator with the ability to execute commands as the root user. This issue requires a domain account with administrator access. The impact is lower in Windows deployments.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 67.0%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2026-28316


Contact Us

Shodan ® - All rights reserved