Vulnerability Details CVE-2015-7839
SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.064
EPSS Ranking 90.5%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2015-7839
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.1
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.2
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.2.1
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.3.0
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.3.1
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.4
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.5
-
cpe:2.3:a:solarwinds:log_and_event_manager:6.6