Vulnerabilities > Solarwinds > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-16 CVE-2024-45710 Uncontrolled Search Path Element vulnerability in Solarwinds Platform
SolarWinds Platform is susceptible to an Uncontrolled Search Path Element Local Privilege Escalation vulnerability.
local
low complexity
solarwinds CWE-427
7.8
2024-10-16 CVE-2024-45711 Path Traversal vulnerability in Solarwinds Serv-U
SolarWinds Serv-U is vulnerable to a directory traversal vulnerability where remote code execution is possible depending on privileges given to the authenticated user.
network
low complexity
solarwinds CWE-22
8.8
2024-09-12 CVE-2024-28991 Unspecified vulnerability in Solarwinds Access Rights Manager
SolarWinds Access Rights Manager (ARM) was found to be susceptible to a remote code execution vulnerability.
network
low complexity
solarwinds
8.8
2024-07-17 CVE-2024-23472 Unspecified vulnerability in Solarwinds Access Rights Manager
SolarWinds Access Rights Manager (ARM) is susceptible to Directory Traversal vulnerability.
network
low complexity
solarwinds
8.8
2024-06-06 CVE-2024-28995 Unspecified vulnerability in Solarwinds Serv-U
SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive files on the host machine.
network
low complexity
solarwinds
7.5
2024-06-04 CVE-2024-28996 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a SWQL Injection Vulnerability.
network
high complexity
solarwinds
8.1
2024-06-04 CVE-2024-28999 Race Condition vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console.
network
high complexity
solarwinds CWE-362
8.1
2024-05-14 CVE-2024-28075 Unspecified vulnerability in Solarwinds Access Rights Manager
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability.
network
low complexity
solarwinds
8.8
2024-04-18 CVE-2024-29001 Unspecified vulnerability in Solarwinds Platform
A SolarWinds Platform SWQL Injection Vulnerability was identified in the user interface.
network
low complexity
solarwinds
8.0
2024-04-17 CVE-2024-28073 Unspecified vulnerability in Solarwinds Serv-U
SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability.
network
low complexity
solarwinds
7.2