Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2021-3154

Disclosure Date: May 04, 2021 (last updated February 22, 2025)
An issue was discovered in SolarWinds Serv-U before 15.2.2. Unauthenticated attackers can retrieve cleartext passwords via macro Injection. NOTE: this had a distinct fix relative to CVE-2020-35481.
Attacker Value
Unknown

CVE-2020-35481

Disclosure Date: February 03, 2021 (last updated February 22, 2025)
SolarWinds Serv-U before 15.2.2 allows Unauthenticated Macro Injection.