CVE-2025-40541: SolarWinds Serv-U Insecure Direct Object Reference (IDOR) Remote Code Execution Vulnerability
An Insecure Direct Object Reference (IDOR) vulnerability exists in Serv-U, which when exploited, gives a malicious actor the ability to execute native code as a privileged account.
This issue requires administrative privileges to abuse. On Windows deployments, the risk is scored as a medium because services frequently run under less-privileged service accounts by default.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40541?
CVE-2025-40541 has been classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2025-40541?
To fix CVE-2025-40541, you should apply the latest security updates from SolarWinds for the Serv-U product.
What are the potential impacts of CVE-2025-40541?
Exploitation of CVE-2025-40541 could allow attackers to execute arbitrary code with elevated privileges on the affected systems.
Who is affected by CVE-2025-40541?
CVE-2025-40541 impacts users of SolarWinds Serv-U that have not applied recent patches or updates.
Is there a workaround for CVE-2025-40541?
Currently, there are no recognized workarounds for CVE-2025-40541 besides upgrading to the patched version of the software.