CVE Tools

Serv-u File Server

35 CVEs tracked. 3 of them are in CISA KEV.

This hub aggregates every CVE we track for Serv-u File Server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Serv-u File Server CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Serv-u File Server CVEs per month
MonthCVEs
2024-101
2024-110
2024-120
2025-010
2025-020
2025-030
2025-041
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-113
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 35 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical926%
  • High720%
  • Medium1851%
  • Low13%

Latest CVEs

The 15 most recently published vulnerabilities affecting Serv-u File Server.

  1. CVE-2025-40549SolarWinds Serv-U Path Restriction Bypass Vulnerability9.1
  2. CVE-2025-40548SolarWinds Serv-U Broken Access Control - Remote Code Execution Vulnerability9.1
  3. CVE-2025-40547SolarWinds Serv-U Logic Abuse - Remote Code Execution Vulnerability9.1
  4. CVE-2024-45712SolarWinds Serv-U Client-Side Cross-Site Scripting Vulnerability2.6
  5. CVE-2024-45711SolarWinds Serv-U FTP Service Directory Traversal Remote Code Execution Vulnerability7.5
  6. CVE-2024-28995SolarWinds Serv-U L Directory Transversal Vulnerability8.6
  7. CVE-2024-28073SolarWinds Serv-U Directory Traversal Remote Code Execution Vulnerability 8.4
  8. CVE-2022-38106Cross-Site Scripting Vulnerability in Serv-U Web Client5.4
  9. CVE-2021-35247Improper Input Validation Vulnerability in Serv-U4.3
  10. CVE-2021-35211Serv-U Remote Memory Escape Vulnerability9.0
  11. CVE-2021-25179SolarWinds Serv-U before 15.2 is affected by Cross Site Scripting (XSS) via the HTTP Host header.6.1
  12. BDU:2014-00412Уязвимость файлового сервера Serv-U File Server, позволяющая удаленному злоумышленнику получить исходные коды произвольных сценариев5.0
  13. BDU:2014-00410Уязвимость файлового сервера Serv-U File Server, позволяющая удаленному злоумышленнику изменить конфигурацию системы6.8
  14. BDU:2014-00411Уязвимость файлового сервера Serv-U File Server, позволяющая удаленному злоумышленнику узнать информацию о конфигурации системы аутентификационные данные пользователей7.8
  15. BDU:2014-00413Уязвимость файлового сервера Serv-U File Server, позволяющая удаленному злоумышленнику выполнить отказ в обслуживании5.0

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store