Vulnerabilities > Solarwinds

DATE CVE VULNERABILITY TITLE RISK
2023-07-26 CVE-2023-33229 Code Injection vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability.
network
low complexity
solarwinds CWE-94
3.5
2023-07-26 CVE-2023-3622 Improper Authentication vulnerability in Solarwinds Platform
Access Control Bypass Vulnerability in the SolarWinds Platform that allows an underprivileged user to read arbitrary resource
network
low complexity
solarwinds CWE-287
4.3
2023-07-26 CVE-2023-23843 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-23844 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-33224 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability.
network
low complexity
solarwinds
7.2
2023-07-26 CVE-2023-33225 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-18 CVE-2023-33231 Cross-site Scripting vulnerability in Solarwinds Database Performance Analyzer
XSS attack was possible in DPA 2023.2 due to insufficient input validation
network
low complexity
solarwinds CWE-79
6.1
2023-06-15 CVE-2023-23841 Cleartext Transmission of Sensitive Information vulnerability in Solarwinds Serv-U
SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File Share or File request.? Part of the URL of the request discloses sensitive data. 
network
low complexity
solarwinds CWE-319
7.5
2023-04-25 CVE-2023-23839 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability.
network
low complexity
solarwinds
6.5
2023-04-25 CVE-2023-23837 Improper Handling of Exceptional Conditions vulnerability in Solarwinds Database Performance Analyzer
No exception handling vulnerability which revealed sensitive or excessive information to users.
network
low complexity
solarwinds CWE-755
7.5