cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-22428,https://securityvulnerability.io/vulnerability/CVE-2020-22428,Cross Site Scripting in SolarWinds Serv-U Product,"The vulnerability in SolarWinds Serv-U allows malicious actors to inject JavaScript payloads through directory names specified by an admin. This Cross Site Scripting (XSS) issue could enable attackers to execute unauthorized scripts in the context of a user's session, potentially leading to data theft or session hijacking. Users of Serv-U versions prior to 15.1.6 Hotfix 3 should take immediate action to mitigate this risk.",Solarwinds,"Serv-u Ftp Server,Serv-u Mft Server",4.8,MEDIUM,0.0014600000577047467,false,,false,false,false,,,false,false,,2021-05-05T02:42:51.000Z,0 CVE-2019-12181,https://securityvulnerability.io/vulnerability/CVE-2019-12181,,A privilege escalation vulnerability exists in SolarWinds Serv-U before 15.1.7 for Linux.,Solarwinds,"Serv-u Mft Server,Serv-u Ftp Server",8.8,HIGH,0.882889986038208,false,,false,false,true,2019-06-12T22:18:45.000Z,true,false,false,,2019-06-17T15:16:26.000Z,0