CVE-2024-28995CISA KEVEPSS p99.9%

CVE-2024-28995SolarWinds Serv-U Path Traversal Vulnerability

SolarWinds / Serv-U

Description

SolarWinds Serv-U contains a path traversal vulnerability that allows an attacker access to read sensitive files on the host machine.

Scoring

EPSS99.61% probability of exploitation · percentile 99.9% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2024-07-17

(incoming)1

TypeTargetConfidenceTier
KEVEntrySolarWinds Serv-U Path Traversal Vulnerability kev-cve-2024-289950%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
SolarWinds Serv-U Remote Code Execution Vulnerability
CVE
SolarWinds Serv-U Improper Input Validation Vulnerability
CVE
CVE-2025-40549
CVE
SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability
CVE
Ivanti Cloud Services Appliance (CSA) Path Traversal Vulnerability
CVE
SolarWinds Web Help Desk Hardcoded Credential Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.