Vulnerabilities > Solarwinds > Solarwinds Platform

DATE CVE VULNERABILITY TITLE RISK
2023-07-26 CVE-2023-33229 Code Injection vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability.
network
low complexity
solarwinds CWE-94
3.5
2023-07-26 CVE-2023-3622 Improper Authentication vulnerability in Solarwinds Platform
Access Control Bypass Vulnerability in the SolarWinds Platform that allows an underprivileged user to read arbitrary resource
network
low complexity
solarwinds CWE-287
4.3
2023-07-26 CVE-2023-23843 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-23844 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-07-26 CVE-2023-33224 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability.
network
low complexity
solarwinds
7.2
2023-07-26 CVE-2023-33225 Incorrect Comparison vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability.
network
low complexity
solarwinds CWE-697
7.2
2023-04-25 CVE-2023-23839 Unspecified vulnerability in Solarwinds Platform
The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability.
network
low complexity
solarwinds
6.5
2022-12-19 CVE-2022-47512 Cleartext Storage of Sensitive Information vulnerability in Solarwinds Platform 2022.4.0
Sensitive information was stored in plain text in a file that is accessible by a user with a local account in Hybrid Cloud Observability (HCO)/ SolarWinds Platform 2022.4.
local
low complexity
solarwinds CWE-312
5.5
2022-09-30 CVE-2022-36965 Cross-site Scripting vulnerability in Solarwinds Platform 2022.2.0
Insufficient sanitization of inputs in QoE application input field could lead to stored and Dom based XSS attack.
network
low complexity
solarwinds CWE-79
6.1