
Cloud Vulnerability DB
A community-led vulnerabilities database
SolarWinds Serv-U File Server before version 15.2.1 contains a security vulnerability related to the mishandling of the Same-Site cookie attribute (Case Number 00331893) (NVD, MITRE).
The vulnerability affects the cookie security mechanism in SolarWinds Serv-U File Server, specifically involving improper handling of the Same-Site cookie attribute. This security feature is designed to prevent cross-site request forgery (CSRF) attacks by controlling how cookies are sent in cross-site requests (NVD).
The mishandling of the Same-Site cookie attribute could potentially lead to security issues related to cross-site request forgery (CSRF) attacks, where malicious websites could perform unauthorized actions on behalf of authenticated users (NVD).
The vulnerability has been addressed in SolarWinds Serv-U File Server version 15.2.1. Users should upgrade to this version or later to resolve the security issue (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."