The Serv-U File Server allows for events such as user login failures to be audited by executing a command. This command can be supplied with parameters that can take the form of user string variables, allowing remote code execution.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: SolarWinds
Published: 2021-08-31T16:00:18
Updated: 2021-09-10T11:30:06
Reserved: 2021-06-22T00:00:00
Link: CVE-2021-35223
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-08-31T16:15:07.750
Modified: 2021-09-16T12:38:34.633
Link: CVE-2021-35223
JSON object: View
Redhat Information
No data.
CWE