solarwinds

320 tracked vulnerabilities.

CVE-2023-50395 HIGH
SolarWinds Platform < 2024.1 - Authenticated SQL Injection and Remote Code Execution via Update Statement
Feb 06, 2024
CVSS 8.0
EPSS 0.01
CVE-2023-35188 HIGH
SolarWinds Platform < 2024.1 - Authenticated SQL Injection via CREATE Statement
Feb 06, 2024
CVSS 8.0
EPSS 0.01
CVE-2023-40058 MEDIUM
SolarWinds Access Rights Manager < 2023.2.1 - Unauthorized Sensitive Data Exposure via Public Knowledgebase
Dec 21, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-40053 MEDIUM
SolarWinds Serv-U 15.4 - Authenticated Arbitrary File Write via File Share Function
Dec 06, 2023
CVSS 5.0
EPSS 0.00
CVE-2023-40056 HIGH
SolarWinds Platform < 2023.4.2 - Authenticated SQL Injection
Nov 28, 2023
CVSS 8.0
EPSS 0.00
CVE-2023-40055 HIGH
SolarWinds Network Configuration Manager < 2023.4 - Directory Traversal Remote Code Execution
Nov 09, 2023
CVSS 8.0
EPSS 0.04
CVE-2023-40054 HIGH
SolarWinds Network Configuration Manager < 2023.4 - Directory Traversal Remote Code Execution
Nov 09, 2023
CVSS 8.0
EPSS 0.01
CVE-2023-40062 HIGH
SolarWinds Platform < 2023.4 - Remote Code Execution via Incomplete List of Disallowed Inputs
Nov 01, 2023
CVSS 8.0
EPSS 0.02
CVE-2023-40061 HIGH
SolarWinds Platform < 2023.4 - Insecure Job Execution Mechanism
Nov 01, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-33228 MEDIUM
SolarWinds Network Configuration Manager - Info Disclosure
Nov 01, 2023
CVSS 4.5
EPSS 0.00
CVE-2023-33227 HIGH
Network Configuration Manager - Path Traversal
Nov 01, 2023
CVSS 8.0
EPSS 0.04
CVE-2023-33226 HIGH
Network Configuration Manager - Path Traversal
Nov 01, 2023
CVSS 8.0
EPSS 0.04
CVE-2023-35187 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Unauthenticated Path Traversal and Remote Code Execution
Oct 19, 2023
CVSS 8.8
EPSS 0.02
CVE-2023-35186 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Authenticated Remote Code Execution via Deserialization
Oct 19, 2023
CVSS 8.0
EPSS 0.10
CVE-2023-35185 MEDIUM
SolarWinds Access Rights Manager < 2023.2.0.73 - Directory Traversal Remote Code Execution
Oct 19, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-35184 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Unauthenticated Remote Code Execution via Deserialization
Oct 19, 2023
CVSS 8.8
EPSS 0.11
CVE-2023-35183 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Authenticated Privilege Escalation via Local Resource Abuse
Oct 19, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-35182 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Unauthenticated Remote Code Execution via Deserialization
Oct 19, 2023
CVSS 8.8
EPSS 0.05
CVE-2023-35181 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Privilege Escalation via Incorrect Folder Permissions
Oct 19, 2023
CVSS 7.8
EPSS 0.00
CVE-2023-35180 HIGH
SolarWinds Access Rights Manager < 2023.2.0.73 - Authenticated Remote Code Execution via API Abuse
Oct 19, 2023
CVSS 8.0
EPSS 0.49
CVE-2023-23845 MEDIUM
SolarWinds Platform - Privilege Escalation
Sep 13, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-23840 MEDIUM
SolarWinds Platform - Privilege Escalation
Sep 13, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-40060 HIGH
SolarWinds Serv-U 15.4-15.4 Hotfix 1 - Authenticated Multi-Factor Authentication Bypass
Sep 07, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-35179 HIGH
SolarWinds Serv-U 15.4 - Authenticated Multi-Factor Authentication Bypass
Aug 11, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-3622 MEDIUM
SolarWinds Platform < 2023.2.1 - Access Control Bypass
Jul 26, 2023
CVSS 4.3
EPSS 0.00