🚨 SolarWinds Serv-U: Luka DoS aktywnie wykorzystywana. Alert CVE-2026-28318

Luka CVE-2026-28318 w SolarWinds Serv-U pozwala na zdalne wywołanie awarii usługi. CISA potwierdza aktywne ataki i dodaje ją do katalogu KEV, co wymaga pilnej reakcji.

https://cyberowi.pl/solarwinds-serv-u-luka-dos-aktywnie-wykorzystywana-alert/

#cve #solarwinds #dos #cisa

#cyberbezpieczenstwo

Quick correction on our earlier post: CVE-2026-28318 affects SolarWinds Serv-U, not Microsoft Entra ID as we stated. The NVD listing confirms it is a crafted POST request crash in Serv-U (CVSS 7.5, HIGH).

We got the product name wrong. That is on us. In this business, precision matters — if we cannot get a CVE description right, why would you trust us with your infrastructure?

Fair challenge from the community. We will do better.

#CyberSecurity #CVE #SolarWinds #InfoSec

📰 CISA Mandates Patch for Actively Exploited SolarWinds DoS Flaw Added to KEV Catalog

📢 CISA KEV ALERT! An actively exploited DoS flaw (CVE-2026-28318) in SolarWinds Serv-U is on the loose. Federal agencies must patch by June 19. All orgs using Serv-U are urged to update immediately! 🚨 #CVE #SolarWinds #Infosec #PatchNow

🌐 cyber[.]netsecops[.]io

🔗 https://cyber.netsecops.io/articles/cisa-orders-patch-for-actively-exploited-solarwinds-serv-u-dos-vulnerability/?utm_…

📰 CISA Mandates Patch for Actively Exploited SolarWinds DoS Flaw Added to KEV Catalog

📢 CISA KEV ALERT! An actively exploited DoS flaw (CVE-2026-28318) in SolarWinds Serv-U is on the loose. Federal agencies must patch by June 19. All orgs using Serv-U are urged to update immediately! 🚨 #CVE #SolarWinds #Infosec #PatchNow

🌐 cyber[.]netsecops[.]io

🔗 https://cyber.netsecops.io/articles/cisa-orders-patch-for-actively-exploited-solarwinds-serv-u-dos-vulnerability/?utm_…

SolarWinds tenta travar ataques contra servidores vulneráveis após alerta da CISA
🔗 https://tugatech.com.pt/t85090-solarwinds-tenta-travar-ataques-contra-servidores-vulneraveis-apos-alerta-da-cisa

#alerta #solarwinds 

SolarWinds tenta travar ataques contra servidores vulneráveis após alerta da CISA

A agência de cibersegurança norte-americana CISA emitiu um aviso sério sobre uma vulnerabilidade de elevada gravidade no software Serv-U da SolarWinds, que está

TugaTech
CISA: Hackers now exploit SolarWinds Serv-U flaw to crash servers

CISA warned today that hackers are now actively exploiting a recently patched high-severity SolarWinds Serv-U flaw to crash servers.

BleepingComputer
CISA: Hackers now exploit SolarWinds Serv-U flaw to crash servers

CISA warned today that hackers are now actively exploiting a recently patched high-severity SolarWinds Serv-U flaw to crash servers.

BleepingComputer

CISA Flags SolarWinds Serv-U Flaw as Actively Exploited

A critical flaw in SolarWinds Serv-U is being actively exploited, allowing attackers to crash the service with a specially crafted POST request - no authentication required. This denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered by a simple HTTP POST request with a malicious Content-Encoding header.

https://osintsights.com/cisa-flags-solarwinds-serv-u-flaw-as-actively-exploited?utm_source=mastodon&utm_medium=social

#Solarwinds #Servu #Cve202628318 #DenialOfService #Contentencoding

CISA Flags SolarWinds Serv-U Flaw as Actively Exploited

Learn how to protect against the actively exploited SolarWinds Serv-U flaw and prevent denial-of-service attacks, read our expert guide now for mitigation steps.

OSINTSights

CISA has issued an urgent warning about a SolarWinds Serv-U vulnerability (CVE-2026-28318) that allows unauthenticated attackers to crash servers using a specially crafted POST request. This low-complexity DoS attack, observed in active exploitation, can immediately disrupt MFT and FTP operations. Federal agencies face a June 19 deadline to patch.

https://www.tpp.blog/z6i07uu

#cybersecurity #cisa #solarwinds

🤖 This post was AI-generated.

Hackers Actively Exploit SolarWinds Serv-U Flaw to Crash Servers

SolarWinds has issued an emergency hotfix to address a critical flaw in its Serv-U file transfer product, which hackers are actively exploiting to crash servers with specially crafted POST requests. A denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered without authentication, posing a significant threat to…

https://osintsights.com/hackers-actively-exploit-solarwinds-serv-u-flaw-to-crash-servers?utm_source=mastodon&utm_medium=social

#Cve202628318 #Solarwinds #Servu #DenialOfService #ManagedFileTransfer

Hackers Actively Exploit SolarWinds Serv-U Flaw to Crash Servers

Learn how hackers exploit SolarWinds Serv-U flaw to crash servers and protect your system with our expert guidance - read the full article now and stay secure.

OSINTSights