Vulnerabilities > Solarwinds > Server AND Application Monitor

DATE CVE VULNERABILITY TITLE RISK
2023-02-15 CVE-2022-47508 Unspecified vulnerability in Solarwinds Server and Application Monitor 2022.4
Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for data via IP address this prevented us from utilizing Kerberos.
network
low complexity
solarwinds
7.5
2015-02-16 CVE-2015-1501 Code Injection vulnerability in Solarwinds Server and Application Monitor
The factory.loadExtensionFactory function in TSUnicodeGraphEditorControl in SolarWinds Server and Application Monitor (SAM) allow remote attackers to execute arbitrary code via a UNC path to a crafted binary.
network
solarwinds CWE-94
6.8
2015-02-16 CVE-2015-1500 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Solarwinds Server and Application Monitor
Multiple stack-based buffer overflows in the TSUnicodeGraphEditorControl in SolarWinds Server and Application Monitor (SAM) allow remote attackers to execute arbitrary code via unspecified vectors to (1) graphManager.load or (2) factory.load.
6.8