CVE-2021-35211

Description from NVD

Microsoft discovered a remote code execution (RCE) vulnerability in the SolarWinds Serv-U product utilizing a Remote Memory Escape Vulnerability. If exploited, a threat actor may be able to gain privileged access to the machine hosting Serv-U Only. SolarWinds Serv-U Managed File Transfer and Serv-U Secure FTP for Windows before 15.2.3 HF2 are affected by this vulnerability.

Information Acquisition Date:2021-07-31T16:40Z
CVSS 2.0: 10.0 HIGH CVSS 3.x: 10.0 CRITICAL

▼ CVSS3 Vec CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

▼ CVSS2 Vec AV:N/AC:L/Au:N/C:C/I:C/A:C

NVD References

 https://www.microsoft.com/security/blog/2021/07/13/microsoft-discovers-threat-actor-targeting-solarwinds-serv-u-software-with-0-day-exploit
     source:MISC
     tags:Patch    Vendor Advisory    
 https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35211
     source:MISC
     tags:Patch    Vendor Advisory    

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Exchange(1 tweets) Linux(1 tweets) Windows(1 tweets)



List of frequently cited URLs

URLNum of Times Referred to
https://alerts.vulmon.com/?utm_source=twitter&utm_medium=so...242
https://www.solarwinds.com/trust-center/security-advisories...40
https://lists.astaro.com/ASGV9-IPS-rules.html19
https://twitter.com/campuscodi/status/14146170891056128028
https://www.helpnetsecurity.com/2021/07/13/solarwinds-patch...8
https://sdx.io/APJD7
https://therecord.media/microsoft-discovers-a-solarwinds-ze...5
https://www.rapid7.com/blog/post/2021/07/12/solarwinds-serv...4
https://www.microsoft.com/security/blog/2021/07/13/microsof...4

▼ Show Information from Twitter(191)


List of frequently cited URLs

URLNum of Times Referred to
alerts.vulmon.com242
www.solarwinds.com40
lists.astaro.com19
twitter.com8
www.helpnetsecurity.com8
sdx.io7
therecord.media5
www.rapid7.com4
www.microsoft.com4

▼ Show Information from Twitter(191)


GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2021/07/31 Score : 0
Added Har-sia Database : 2021/07/13
Last Modified : 2021/07/31
Highest Scored Date : 2021/07/13
Highest Score : 70