Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-28321

SolarWinds Serv-U is affected by a broken access control vulnerability that could allow arbitrary file read and write, which can then be used to escalate privileges and execute code as root. A domain administrator access is required, and the impact is lower in Windows installations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 33.5%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2026-28321


Contact Us

Shodan ® - All rights reserved