Vulnerability Details CVE-2023-40062
SolarWinds Platform Incomplete List of Disallowed Inputs Remote Code Execution Vulnerability. If executed, this vulnerability would allow a low-privileged user to execute commands with SYSTEM privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.023
EPSS Ranking 83.9%
CVSS Severity
CVSS v3 Score 8.0
Products affected by CVE-2023-40062
-
cpe:2.3:a:solarwinds:solarwinds_platform:-
-
cpe:2.3:a:solarwinds:solarwinds_platform:2022.2.0
-
cpe:2.3:a:solarwinds:solarwinds_platform:2022.3.0
-
cpe:2.3:a:solarwinds:solarwinds_platform:2022.4.0
-
cpe:2.3:a:solarwinds:solarwinds_platform:2023.1.0
-
cpe:2.3:a:solarwinds:solarwinds_platform:2023.2.0
-
cpe:2.3:a:solarwinds:solarwinds_platform:2023.3.0