Vulnerabilities
Vulnerable Software
Solarwinds:  Security Vulnerabilities
SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited.
CVSS Score
8.0
EPSS Score
0.015
Published
2024-02-06
SQL Injection Remote Code Execution Vulnerability was found using an update statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited
CVSS Score
8.0
EPSS Score
0.016
Published
2024-02-06
Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Rights Manager (ARM) if the threat actor is in the same environment.
CVSS Score
6.5
EPSS Score
0.008
Published
2023-12-21
A vulnerability has been identified within Serv-U 15.4 that allows an authenticated actor to insert content on the file share function feature of Serv-U, which could be used maliciously.
CVSS Score
5.0
EPSS Score
0.008
Published
2023-12-06
SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.
CVSS Score
8.0
EPSS Score
0.048
Published
2023-11-28
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges. We found this issue was not resolved in CVE-2023-33227
CVSS Score
8.0
EPSS Score
0.021
Published
2023-11-09
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges. We found this issue was not resolved in CVE-2023-33226
CVSS Score
8.0
EPSS Score
0.03
Published
2023-11-09
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges.
CVSS Score
8.0
EPSS Score
0.018
Published
2023-11-01
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.
CVSS Score
8.0
EPSS Score
0.018
Published
2023-11-01
The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to obtain sensitive information.
CVSS Score
4.5
EPSS Score
0.004
Published
2023-11-01


Contact Us

Shodan ® - All rights reserved