10
CVSSv2

CVE-2021-35211

Published: 14/07/2021 Updated: 08/08/2023
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 10 | Impact Score: 6 | Exploitability Score: 3.9
VMScore: 891
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft discovered a remote code execution (RCE) vulnerability in the SolarWinds Serv-U product utilizing a Remote Memory Escape Vulnerability. If exploited, a threat actor may be able to gain privileged access to the machine hosting Serv-U Only. SolarWinds Serv-U Managed File Transfer and Serv-U Secure FTP for Windows prior to 15.2.3 HF2 are affected by this vulnerability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

solarwinds serv-u

solarwinds serv-u 15.2.3

Github Repositories

panopticon-TA505 blogtalosintelligencecom/2021/08/raccoon-and-amadey-install-servhelperhtml wwwsecurityweekcom/russia-linked-ta505-back-targeting-financial-institutions researchnccgroupcom/2021/11/08/ta505-exploits-solarwinds-serv-u-vulnerability-cve-2021-35211-for-initial-access/ researchnccgroupcom/2021/12/01/tracking-a-p2p-network-rel

Serv-U CVE-2021-35211 Exploit Potential for DoS - check your rules of engagement The exploit doesn't work every time, but it works enough that it will run shellcode in roughly 1 in every 5 or 6 runs However, sometimes a failed exploit will crash the Serv-U server Please ensure that your rules of engagement permit the risk of loss or degradation of service Symptoms seen

Recent Articles

Stor-a-File hit by ransomware after crooks target SolarWinds Serv-U FTP software
The Register • Gareth Corfield • 10 Nov 2021

Get our weekly newsletter New research says it's Clop's favourite attack method du jour

Stor-a-File, a British data capture and storage company, suffered a ransomware attack in August that exploited an unpatched instance of SolarWinds' Serv-U FTP software. The company informed its clients about the September attack, and told The Register that it refused to pay. We understand some data has been leaked by ransomware criminals on a Tor blog. At least one of Stor-a-File's clients is a medical company, one of whose customers got in touch with El Reg last week. "The medical company (whic...

SolarWinds issues software update – one it wrote for a change – to patch hole exploited in the wild
The Register • Iain Thomson in San Francisco • 12 Jul 2021

'Single threat actor' already abusing RCE flaw, Microsoft reports

SolarWinds has issued an emergency patch after a critical security hole in its Serv-U Managed File Transfer and Serv-U Secure FTP was spotted being exploited in the wild. The vulnerability, discovered by Microsoft's Threat Intelligence Center (MSTIC) and Offensive Security Research teams, can be exploited by an attacker to achieve remote code execution, and is present in Serv-U version 15.2.3 HF1 and all prior builds. The Redmond crew also said a "single threat actor" was abusing the programming...

China is likely stockpiling and deploying vulnerabilities, says Microsoft
The Register

Topics Security Off-Prem On-Prem Software Offbeat Vendor Voice Vendor Voice Resources Increase in espionage and cyberattacks since law requiring vulnerabilities first be reported to Beijing

Microsoft has asserted that China's offensive cyber capabilities have improved, thanks to a law that has allowed Beijing to create an arsenal of unreported software vulnerabilities. China's 2021 law required organizations to report security vulnerabilities to local authorities before disclosing them to any other entity. The rules mean Beijing can use local research to hoard vulnerability information. A year later, researchers from the Atlantic Council found there was a decrease in reported vulne...