Vulnerabilities > Solarwinds

DATE CVE VULNERABILITY TITLE RISK
2023-11-09 CVE-2023-40054 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-22
8.8
2023-11-09 CVE-2023-40055 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-22
8.8
2023-11-01 CVE-2023-33226 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-22
8.8
2023-11-01 CVE-2023-33227 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.
network
low complexity
solarwinds CWE-22
8.8
2023-11-01 CVE-2023-33228 Missing Encryption of Sensitive Data vulnerability in Solarwinds Network Configuration Manager
The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive Information Vulnerability.
network
low complexity
solarwinds CWE-311
4.9
2023-11-01 CVE-2023-40061 Improper Input Validation vulnerability in Solarwinds Platform
 Insecure job execution mechanism vulnerability.
low complexity
solarwinds CWE-20
8.8
2023-11-01 CVE-2023-40062 Improper Input Validation vulnerability in Solarwinds Platform
SolarWinds Platform Incomplete List of Disallowed Inputs Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-20
8.8
2023-10-19 CVE-2023-35180 Deserialization of Untrusted Data vulnerability in Solarwinds Access Rights Manager
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-502
8.8
2023-10-19 CVE-2023-35181 Incorrect Default Permissions vulnerability in Solarwinds Access Rights Manager
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability.
local
low complexity
solarwinds CWE-276
7.8
2023-10-19 CVE-2023-35182 Deserialization of Untrusted Data vulnerability in Solarwinds Access Rights Manager
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-502
critical
9.8