Vulnerabilities > Solarwinds > Solarwinds Platform > 2023.1.0

DATE CVE VULNERABILITY TITLE RISK
2025-02-11 CVE-2024-52606 Server-Side Request Forgery (SSRF) vulnerability in Solarwinds Platform
SolarWinds Platform is affected by server-side request forgery vulnerability.
network
low complexity
solarwinds CWE-918
critical
9.8
2025-02-11 CVE-2024-52611 Information Exposure Through an Error Message vulnerability in Solarwinds Platform
The SolarWinds Platform is vulnerable to an information disclosure vulnerability through an error message.
low complexity
solarwinds CWE-209
3.5
2025-02-11 CVE-2024-52612 Unspecified vulnerability in Solarwinds Platform
SolarWinds Platform is vulnerable to a reflected cross-site scripting vulnerability.
network
low complexity
solarwinds
4.8
2024-12-04 CVE-2024-45717 Cross-site Scripting vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to a XSS vulnerability that affects the search and node information section of the user interface.
low complexity
solarwinds CWE-79
4.8
2024-10-16 CVE-2024-45710 Uncontrolled Search Path Element vulnerability in Solarwinds Platform
SolarWinds Platform is susceptible to an Uncontrolled Search Path Element Local Privilege Escalation vulnerability.
local
low complexity
solarwinds CWE-427
7.8
2024-10-16 CVE-2024-45715 Cross-site Scripting vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to a Cross-Site Scripting vulnerability when performing an edit function to existing elements.
network
low complexity
solarwinds CWE-79
6.1
2024-06-04 CVE-2024-28996 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a SWQL Injection Vulnerability.
network
high complexity
solarwinds
8.1
2024-06-04 CVE-2024-28999 Race Condition vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console.
network
high complexity
solarwinds CWE-362
8.1
2024-06-04 CVE-2024-29004 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a stored cross-site scripting vulnerability affecting the web console.
network
low complexity
solarwinds
4.8
2024-05-20 CVE-2024-29000 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was determined to be affected by a reflected cross-site scripting vulnerability affecting the web console.
network
low complexity
solarwinds
4.8