Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-35238
User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
43.4%
CVSS Severity
CVSS v3 Score
4.8
CVSS v2 Score
3.5
References
https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
https://support.solarwinds.com/SuccessCenter/s/article/Orion-Platform-2020-2-6-Hotfix-1?language=en_US
https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35238
https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
https://support.solarwinds.com/SuccessCenter/s/article/Orion-Platform-2020-2-6-Hotfix-1?language=en_US
https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35238
Products affected by CVE-2021-35238
Solarwinds
»
Orion Platform
»
Version:
2016.1
cpe:2.3:a:solarwinds:orion_platform:2016.1
Solarwinds
»
Orion Platform
»
Version:
2016.2
cpe:2.3:a:solarwinds:orion_platform:2016.2
Solarwinds
»
Orion Platform
»
Version:
2017.1
cpe:2.3:a:solarwinds:orion_platform:2017.1
Solarwinds
»
Orion Platform
»
Version:
2017.3
cpe:2.3:a:solarwinds:orion_platform:2017.3
Solarwinds
»
Orion Platform
»
Version:
2018.2
cpe:2.3:a:solarwinds:orion_platform:2018.2
Solarwinds
»
Orion Platform
»
Version:
2018.4
cpe:2.3:a:solarwinds:orion_platform:2018.4
Solarwinds
»
Orion Platform
»
Version:
2019.2
cpe:2.3:a:solarwinds:orion_platform:2019.2
Solarwinds
»
Orion Platform
»
Version:
2019.4
cpe:2.3:a:solarwinds:orion_platform:2019.4
Solarwinds
»
Orion Platform
»
Version:
2019.4.2
cpe:2.3:a:solarwinds:orion_platform:2019.4.2
Solarwinds
»
Orion Platform
»
Version:
2020.2
cpe:2.3:a:solarwinds:orion_platform:2020.2
Solarwinds
»
Orion Platform
»
Version:
2020.2.1
cpe:2.3:a:solarwinds:orion_platform:2020.2.1
Solarwinds
»
Orion Platform
»
Version:
2020.2.4
cpe:2.3:a:solarwinds:orion_platform:2020.2.4
Solarwinds
»
Orion Platform
»
Version:
2020.2.5
cpe:2.3:a:solarwinds:orion_platform:2020.2.5
Solarwinds
»
Orion Platform
»
Version:
2020.2.6
cpe:2.3:a:solarwinds:orion_platform:2020.2.6
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved