solarwinds
320 tracked vulnerabilities.
CVE-2020-12608
HIGH
SolarWinds MSP PME <1.1.15 - Code Execution
May 07, 2020
CVSS 7.8
EPSS 0.04
CVE-2020-5734
HIGH
SolarWinds Dameware - Buffer Overflow
Apr 07, 2020
CVSS 7.5
EPSS 0.13
CVE-2020-7984
HIGH
SolarWinds N-central <12.1 SP1 HF5-12.2 SP1 HF2 - Info Disclosure
Jan 26, 2020
CVSS 7.5
EPSS 0.01
CVE-2019-16961
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Stored Cross-Site Scripting via Schedule Name
Jan 15, 2021
CVSS 5.4
EPSS 0.02
CVE-2019-16954
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Cross-Site Scripting via Help Request Ticket Comment
Jan 06, 2021
CVSS 5.4
EPSS 0.01
CVE-2019-16960
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Stored Cross-Site Scripting via CSV Template Location Name Field
Jan 04, 2021
CVSS 5.4
EPSS 0.02
CVE-2019-16956
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Cross-Site Scripting via Request Type Parameter
Jan 04, 2021
CVSS 5.4
EPSS 0.02
CVE-2019-16959
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Code Injection
Dec 21, 2020
CVSS 6.5
EPSS 0.01
CVE-2019-16957
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Stored Cross-Site Scripting via User Account First Name Field
Dec 18, 2020
CVSS 5.4
EPSS 0.02
CVE-2019-16955
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Stored Cross-Site Scripting via SVG File Upload
Dec 18, 2020
CVSS 5.4
EPSS 0.02
CVE-2019-16958
MEDIUM
SolarWinds Web Help Desk 12.7.0 - Stored Cross-Site Scripting via Location Name
Dec 01, 2020
CVSS 5.4
EPSS 0.02
CVE-2019-12864
MEDIUM
SolarWinds Orion Platform 2018.4 HF3 - Information Leakage via Error Stack Trace
May 04, 2020
CVSS 5.5
EPSS 0.00
CVE-2019-20002
HIGH
SolarWinds WebHelpDesk 12.7.1 - Code Injection
Apr 27, 2020
CVSS 7.8
EPSS 0.01
CVE-2019-12769
HIGH
SolarWinds Serv-U Managed File Transfer < 15.1.6 Hotfix 2 - Cross-Site Request Forgery via File Upload
Mar 18, 2020
CVSS 8.8
EPSS 0.01
CVE-2019-12863
MEDIUM
SolarWinds Orion Platform 2018.4 HF3 - Stored Cross-Site Scripting via Web Console Settings Screen
Feb 25, 2020
CVSS 4.8
EPSS 0.02
CVE-2019-12954
MEDIUM
SolarWinds Orion Platform 2018 NPM 12.3 NetPath 1.1.3 - Authenticated Stored XSS via VIDEO onerror
Feb 17, 2020
CVSS 5.4
EPSS 0.03
CVE-2019-17127
MEDIUM
SolarWinds Orion Platform 2019.2 HF1 - Stored Cross-Site Scripting via Angular Template Injection
Jan 17, 2020
CVSS 6.1
EPSS 0.02
CVE-2019-17125
MEDIUM
SolarWinds Orion Platform 2019.2 HF1 - Stored Cross-Site Scripting via Angular Template Injection
Jan 17, 2020
CVSS 6.1
EPSS 0.02
CVE-2019-19829
MEDIUM
SolarWinds Serv-U FTP Server 15.1.7 - Cross-Site Scripting via Email Parameter
Dec 18, 2019
CVSS 5.4
EPSS 0.01
CVE-2019-13182
MEDIUM
SolarWinds Serv-U FTP Server 15.1.7 - Stored Cross-Site Scripting
Dec 16, 2019
CVSS 5.4
EPSS 0.02
CVE-2019-13181
MEDIUM
SolarWinds Serv-U FTP Server <15.1.7 - SQL Injection
Dec 16, 2019
CVSS 6.5
EPSS 0.02
CVE-2019-3980
CRITICAL
Solarwinds Dameware Mini Remote Control 12.1.0.89 - Unauthenticated Remote Code Execution via Smart Card Authentication
Oct 08, 2019
CVSS 9.8
EPSS 0.49
CVE-2019-12181
HIGH
Serv-U FTP Server prepareinstallation Privilege Escalation
Jun 17, 2019
CVSS 8.8
EPSS 0.53
CVE-2019-3957
HIGH
Dameware Mini Remote Control < 12.1.0.34 - Unauthenticated Out-of-bounds Read via RsaSignatureLen Validation
Jun 07, 2019
CVSS 7.4
EPSS 0.05
CVE-2019-9017
HIGH
SolarWinds DameWare Mini Remote Control 10.0 - Buffer Overflow via Machine Name Size Field
May 02, 2019
CVSS 7.5
EPSS 0.21
Products
orion_platform 49
serv-u 39
access_rights_manager 32
solarwinds_platform 27
serv-u_file_server 20
web_help_desk 20
serv-u_ftp_server 11
database_performance_analyzer 10
n-central 9
orion_network_performance_monitor 9
network_performance_monitor 8
observability_self-hosted 8
dameware_mini_remote_control 7
network_configuration_manager 7
tftp_server 6
webhelpdesk 6
kiwi_syslog_server 5
log_and_event_manager 5
orion_web_performance_monitor 4
security_event_manager 4
log_\&_event_manager 3
patch_manager 3
server_and_application_monitor 3
storage_manager 3
virtualization_manager 3
SolarWinds Observability Self-Hosted 2
ftp_voyager 2
kiwi_cattools 2
netpath 2
serv-u_mft_server 2
Quick Filters