Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-35240
A security researcher stored XSS via a Help Server setting. This affects customers using Internet Explorer, because they do not support 'rel=noopener'.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
38.7%
CVSS Severity
CVSS v3 Score
6.5
CVSS v2 Score
3.5
References
https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
https://support.solarwinds.com/SuccessCenter/s/article/Mitigate-the-Stored-XSS-via-Help-Server-setting-CVE-2021-35240?language=en_US
https://support.solarwinds.com/SuccessCenter/s/article/Orion-Platform-2020-2-6-Hotfix-1?language=en_US
https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35240
https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
https://support.solarwinds.com/SuccessCenter/s/article/Mitigate-the-Stored-XSS-via-Help-Server-setting-CVE-2021-35240?language=en_US
https://support.solarwinds.com/SuccessCenter/s/article/Orion-Platform-2020-2-6-Hotfix-1?language=en_US
https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35240
Products affected by CVE-2021-35240
Microsoft
»
Internet Explorer
»
Version:
N/A
cpe:2.3:a:microsoft:internet_explorer:-
Solarwinds
»
Orion Platform
»
Version:
2016.1
cpe:2.3:a:solarwinds:orion_platform:2016.1
Solarwinds
»
Orion Platform
»
Version:
2016.2
cpe:2.3:a:solarwinds:orion_platform:2016.2
Solarwinds
»
Orion Platform
»
Version:
2017.1
cpe:2.3:a:solarwinds:orion_platform:2017.1
Solarwinds
»
Orion Platform
»
Version:
2017.3
cpe:2.3:a:solarwinds:orion_platform:2017.3
Solarwinds
»
Orion Platform
»
Version:
2018.2
cpe:2.3:a:solarwinds:orion_platform:2018.2
Solarwinds
»
Orion Platform
»
Version:
2018.4
cpe:2.3:a:solarwinds:orion_platform:2018.4
Solarwinds
»
Orion Platform
»
Version:
2019.2
cpe:2.3:a:solarwinds:orion_platform:2019.2
Solarwinds
»
Orion Platform
»
Version:
2019.4
cpe:2.3:a:solarwinds:orion_platform:2019.4
Solarwinds
»
Orion Platform
»
Version:
2019.4.2
cpe:2.3:a:solarwinds:orion_platform:2019.4.2
Solarwinds
»
Orion Platform
»
Version:
2020.2
cpe:2.3:a:solarwinds:orion_platform:2020.2
Solarwinds
»
Orion Platform
»
Version:
2020.2.1
cpe:2.3:a:solarwinds:orion_platform:2020.2.1
Solarwinds
»
Orion Platform
»
Version:
2020.2.4
cpe:2.3:a:solarwinds:orion_platform:2020.2.4
Solarwinds
»
Orion Platform
»
Version:
2020.2.5
cpe:2.3:a:solarwinds:orion_platform:2020.2.5
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved