These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-28314 is an insecure direct object reference vulnerability in SolarWinds Serv-U that leads to account takeover. User authentication is required. The impact is lower in Windows deployments. This vulnerability has a CVSS score of 9.1 and is classified as CRITICAL. Affected users should review and apply patches to mitigate this vulnerability. The vulnerability can be exploited by authenticated users [truncated]
CVE-2026-28313 is an insecure direct object reference (IDOR) vulnerability in SolarWinds Serv-U that can lead to SMTP hijacking and arbitrary account takeover. The impact is lower in Windows deployments. The CVE record was published on 2026-07-21T16:17:09.147Z and has not been modified since then. Organizations should review their deployments and verify configurations to ensure secure object references.
A critical vulnerability was found in SolarWinds Serv-U, which allows a domain administrator to escalate their user type to that of a system administrator. The impact is lower in Windows deployments. This AI-assisted PatchSiren debrief is based on the supplied source corpus. The vulnerability has a CVSS score of 9.1 and is classified as CRITICAL. System administrators and security teams should be aware of [truncated]
A critical vulnerability was found in SolarWinds Serv-U, which allows a domain administrator to create system administrator accounts. The impact is lower in Windows deployments. The CVE record was published on 2026-07-21T16:17:08.743Z and was last modified on 2026-07-22T19:17:01.593Z. This vulnerability has significant implications for organizations using SolarWinds Serv-U, as it could allow attackers to [truncated]
A critical vulnerability was identified in SolarWinds Serv-U, which is susceptible to an insecure direct object reference (IDOR) vulnerability. This vulnerability can potentially lead to remote code execution and requires domain administrator access. The impact is noted to be lower in Windows deployments. The vulnerability has a CVSS score of 9.1 and is considered critical. Administrators and users of Sol [truncated]
A critical vulnerability was found in SolarWinds Serv-U, which allows a domain user group to be elevated into an administrator group. This privilege escalation vulnerability has a CVSS score of 9.1 and is classified as CRITICAL. The impact is lower in Windows deployments due to stricter access controls. The CVE record was published on 2026-07-21T16:17:08.443Z and was last modified on 2026-07-22T19:17:01.2 [truncated]
A critical vulnerability was found in SolarWinds Serv-U, which allows a domain administrator to elevate their privileges to a system administrator. This could lead to significant security breaches if exploited. The impact is lower in Windows deployments. The CVE record was published on 2026-07-21T16:17:08.317Z and was last modified on 2026-07-22T19:17:01.100Z. The vulnerability is classified as CWE-284 an [truncated]
CVE-2026-28305 is an insecure direct object reference (IDOR) vulnerability in SolarWinds Serv-U that can lead to remote code execution as root. A domain account with admin privileges and read and write access to the home directory is required. The impact is lower in Windows deployments. This vulnerability has a CVSS score of 9.1, indicating critical severity. Users of SolarWinds Serv-U should be aware of [truncated]
CVE-2026-28302 is an insecure direct object reference (IDOR) vulnerability in SolarWinds Serv-U that can lead to privilege escalation and remote code execution as root. This issue requires group administrator access. The impact is lower in Windows deployments. Users should review the vulnerability details and apply patches to mitigate the risk. Affected users should review and apply patches provided by th [truncated]
CVE-2026-28318 is a HIGH severity vulnerability in SolarWinds Serv-U, classified as Uncontrolled Resource Consumption with a CVSS score of 7.5. It was published on 2026-06-05 and added to the CISA Known Exploited Vulnerabilities catalog on the same day, with a due date for mitigations of 2026-06-19. The vulnerability is described as an Uncontrolled Resource Consumption issue in SolarWinds Serv-U.
CVE-2025-26399 is a SolarWinds Web Help Desk deserialization of untrusted data vulnerability that CISA has added to its Known Exploited Vulnerabilities catalog. Because it is officially flagged as known exploited, organizations should treat it as an urgent remediation item and follow the vendor guidance referenced by CISA.
CVE-2025-40536 is a SolarWinds Web Help Desk security control bypass vulnerability that CISA added to its Known Exploited Vulnerabilities (KEV) catalog on 2026-02-12. KEV inclusion means CISA has determined the issue is being actively exploited or has been exploited in the wild. Organizations using Web Help Desk should treat this as a high-priority remediation item and follow vendor instructions immediately.
CVE-2025-40551 is a SolarWinds Web Help Desk deserialization of untrusted data issue that CISA added to its Known Exploited Vulnerabilities catalog on 2026-02-03. Because CISA has set a remediation due date of 2026-02-06, organizations using the product should treat this as a time-sensitive remediation item and follow vendor guidance immediately.
CVE-2024-28987 is a SolarWinds Web Help Desk hardcoded credential vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2024-10-15. That KEV designation means CISA considers it actively exploited in the wild. CISA’s guidance for KEV entries is to apply vendor mitigations or discontinue use of the product if mitigations are unavailable.
CVE-2024-28986 affects SolarWinds Web Help Desk and is listed by CISA in the Known Exploited Vulnerabilities catalog. Because CISA added it to KEV on 2024-08-15 and set a remediation due date of 2024-09-05, organizations should treat it as a high-priority defensive issue and follow vendor guidance immediately.
CVE-2024-28995 is a SolarWinds Serv-U path traversal vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2024-07-17. Because it is listed as known to be exploited, organizations using Serv-U should treat it as a priority issue and follow vendor guidance or discontinue use if mitigations are unavailable.
CVE-2021-35247 is a SolarWinds Serv-U improper input validation vulnerability that was added to CISA’s Known Exploited Vulnerabilities (KEV) catalog on 2022-01-21. The KEV listing means CISA considered it actively exploited and set a remediation due date of 2022-02-04. The supplied corpus does not include a CVSS score, so defensive prioritization should be driven by the KEV status and vendor guidance rath [truncated]
CVE-2021-35211 is a SolarWinds Serv-U remote code execution vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2021-11-03. CISA marked it as known to be used in ransomware campaigns and directed affected organizations to apply updates per vendor instructions. Because it is in KEV, this issue should be treated as an active exposure rather than a routine patch item.
CVE-2020-10148 is a SolarWinds Orion authentication bypass vulnerability that CISA lists in its Known Exploited Vulnerabilities catalog. Because it is flagged as known exploited, affected Orion deployments should be treated as urgent patch-and-verify items, following vendor update guidance.
CVE-2016-3643 is a SolarWinds Virtualization Manager privilege escalation vulnerability that CISA lists in its Known Exploited Vulnerabilities catalog. Based on the supplied corpus, the key defensive takeaway is that this issue is treated as known exploited and should be prioritized for patching according to vendor guidance. The source record was published and modified on 2021-11-03 in the KEV feed, which [truncated]