CVE-2020-15543: Input Validation
Published Jul 5, 2020
·Updated
SolarWinds Serv-U FTP server before 15.2.1 does not validate an argument path.
Affected Software
1 affected component
SolarWinds Serv-U FTP server<15.2.1
Event History
Jul 5, 2020
CVE Published
via MITRE·09:04 PM
Data Sourced
via MITRE·09:04 PM
Description
Frequently Asked Questions
1
What is CVE-2020-15543?
CVE-2020-15543 is a vulnerability in SolarWinds Serv-U FTP server before version 15.2.1 that does not validate an argument path, allowing unauthorized access to sensitive files.
2
How severe is CVE-2020-15543?
CVE-2020-15543 has a severity rating of 9.8 (Critical).
3
What software is affected by CVE-2020-15543?
SolarWinds Serv-U FTP server versions up to but not including 15.2.1 are affected by CVE-2020-15543.
4
How can I fix CVE-2020-15543?
To fix CVE-2020-15543, upgrade your SolarWinds Serv-U FTP server to version 15.2.1 or higher.
5
Where can I find more information about CVE-2020-15543?
More information about CVE-2020-15543 can be found at the following link: [SolarWinds Serv-U FTP Server 15.2.1 Release Notes](https://documentation.solarwinds.com/en/success_center/servu/Content/Release_Notes/Servu_15-2-1_release_notes.htm)