Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    The Real AI Disruption Isn’t the Technology. It’s the Company.

    September 14, 2026

    New York Seizes a Dozen Celebrity Deepfake Websites

    September 14, 2026

    The AI industry has taken a doomer turn. What now?

    September 14, 2026
    Facebook X (Twitter) Instagram
    Trending
    • The Real AI Disruption Isn’t the Technology. It’s the Company.
    • New York Seizes a Dozen Celebrity Deepfake Websites
    • The AI industry has taken a doomer turn. What now?
    • Countries Seek to Curb Social Media Addiction for Kids.
    • Google’s Genome Atlas Predicts the Effect of Every Possible DNA Mutation
    • AI Leaders Are Calling for a Slowdown. Trump’s Team Says It’s on Them
    • The Download: AI’s real extinction threat and age-reversal tech for eyes
    • Sexually Explicit Deepfake Sites Target 100-Plus Politicians in Europe
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»SolarWinds Serv-U Vulnerability Exploited in the Wild
    Cybersecurity

    SolarWinds Serv-U Vulnerability Exploited in the Wild

    kirklandc008@gmail.comBy kirklandc008@gmail.comJune 8, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    SolarWinds patches vulnerability
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The US cybersecurity agency CISA on Friday warned of attacks targeting a SolarWinds Serv-U vulnerability that had been patched a couple of days earlier.

    Tracked as CVE-2026-28318 (CVSS score of 7.5), the bug is described as a denial-of-service (DoS) issue that can be exploited via specially crafted POST requests to crash the Serv-U service.

    Successful exploitation of the security defect does not require authentication, SolarWinds warned on Thursday.

    The flaw was addressed in Serv-U 15.5.4 Hotfix 1. SolarWinds encourages all customers to download and install the hotfix, including those who recently upgraded to Serv-U 15.5.4.

    According to SolarWinds, the hotfix prevents attackers from crashing the Serv-U service via requests containing the ‘Content-Encoding: deflate’ header and some data.

    Users of Serv-U versions 15.4.2, 15.5, and 15.5.1, which have reached End-of-Life (EoL), are advised to upgrade to a supported release as soon as possible.

    Advertisement. Scroll to continue reading.

    While SolarWinds’s advisory makes no mention of CVE-2026-28318 being exploited in the wild, CISA on Friday added the bug to its Known Exploited Vulnerabilities (KEV) catalog.

    It’s unclear who is behind the attacks and whether the vulnerability has been exploited as a zero-day.

    In line with Binding Operational Directive (BOD) 22-01’s requirements, CISA urged federal agencies to patch the CVE by June 19 to keep their networks protected against active threats.

    While BOD 22-01 only applies to federal agencies, all organizations are advised to apply SolarWinds’ hotfix as soon as possible.

    The company’s advisory contains detailed instructions on installing the hotfix and on removing it if necessary.

    Related: Chrome 149 Patches 429 Vulnerabilities

    Related: Mirasvit Vulnerability Exploited to Execute Code on Magento Servers

    Related: Gitea Vulnerability Exposed 30,000 Deployments to Attacks

    Related: Half of the 6 Million Internet-Facing FTP Servers Lack Encryption

    exploited ServU SolarWinds vulnerability wild
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    Data from drones in Ukraine is fueling a new Wild West marketplace

    September 4, 2026

    Ransomware in 2026: More groups, more victims, no slowdown

    July 26, 2026

    The 3 types of people who will excel in the AI agent era, according to tech leaders

    July 26, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Nothing CEO says phone prices are going to keep going up

    June 12, 20267 Views

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views

    The AirPods 4 and Lego’s brick-ified Grogu are our favorite deals this week

    October 12, 20253 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • The Real AI Disruption Isn’t the Technology. It’s the Company.
    • New York Seizes a Dozen Celebrity Deepfake Websites
    • The AI industry has taken a doomer turn. What now?
    • Countries Seek to Curb Social Media Addiction for Kids.
    • Google’s Genome Atlas Predicts the Effect of Every Possible DNA Mutation

    The Real AI Disruption Isn’t the Technology. It’s the Company.

    September 14, 2026

    New York Seizes a Dozen Celebrity Deepfake Websites

    September 14, 2026

    The AI industry has taken a doomer turn. What now?

    September 14, 2026

    Countries Seek to Curb Social Media Addiction for Kids.

    September 14, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.