GovCERT.CZ[verified]@GOVCERT_CZPatch
SolarWinds Serv‑U is affected by a series of RCE vulnerabilities (CVE‑2025‑40538‑40541) that allow root execution; updating to version 15.5.4 or newer mitigates the risk.
Dr. John D. Johnson[verified]@johndjohnsonPatch
The post urges immediate patching of four SolarWinds CVEs rated 9.1 CVSS that allow remote code execution via broken access control, type confusion, and IDOR vulnerabilities.
セキュリティ対策Lab[verified]@securityLab_jpPatch
SolarWinds Serv‑U has released fixes for four critical CVEs (CVE‑2025‑40538 to 40541); the post does not provide PoC, exploit, or technical details beyond the CVE IDs.
CVETodo[verified]@CveTodoDisclosure
The post discloses CVE‑2025‑40540 as a type‑confusion flaw in Serv‑U that permits privileged code execution when administrative rights are present, but it does not mention any PoC, exploit, or patch.
CCB Alert@CCBalertDisclosure
Four critical SolarWinds Serv‑U CVEs (CVE‑2025‑40538‑40541) with a CVSS score of 9.1 are highlighted, warning of potential remote code execution and urging users to apply patches.
Security Harvester@secharvesterxGeneral
The tweet references SolarWinds CVE-2025-4054 but provides no further details or actionable information.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The post references CVE-2025-40540, a type confusion vulnerability in Serv‑U, but provides no evidence of PoC, exploit, active use, or patch information.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE‑2025‑40540, a critical type‑confusion flaw in Serv‑U that permits arbitrary code execution, but it does not provide a PoC, exploit, or patch information.