Vulnerabilities
Vulnerable Software
Solarwinds:  >> Solarwinds Platform  Security Vulnerabilities
The SolarWinds Platform was susceptible to a XSS vulnerability that affects the maps section of the user interface. This vulnerability requires authentication and requires user interaction.
CVSS Score
7.5
EPSS Score
0.001
Published
2024-04-18
The SolarWinds Platform was susceptible to a Arbitrary Open Redirection Vulnerability. A potential attacker can redirect to different domain when using URL parameter with relative entry in the correct format
CVSS Score
7.0
EPSS Score
0.0
Published
2024-04-18
A SolarWinds Platform SWQL Injection Vulnerability was identified in the user interface. This vulnerability requires authentication and user interaction to be exploited.
CVSS Score
7.5
EPSS Score
0.0
Published
2024-04-18
SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited.
CVSS Score
8.0
EPSS Score
0.006
Published
2024-02-06
SQL Injection Remote Code Execution Vulnerability was found using an update statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited
CVSS Score
8.0
EPSS Score
0.006
Published
2024-02-06
SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.
CVSS Score
8.0
EPSS Score
0.001
Published
2023-11-28
 Insecure job execution mechanism vulnerability. This vulnerability can lead to other attacks as a result.
CVSS Score
8.8
EPSS Score
0.001
Published
2023-11-01
SolarWinds Platform Incomplete List of Disallowed Inputs Remote Code Execution Vulnerability. If executed, this vulnerability would allow a low-privileged user to execute commands with SYSTEM privileges.
CVSS Score
8.0
EPSS Score
0.023
Published
2023-11-01
The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds Platform account to append URL parameters to inject passive HTML.
CVSS Score
3.5
EPSS Score
0.006
Published
2023-07-26
Access Control Bypass Vulnerability in the SolarWinds Platform that allows an underprivileged user to read arbitrary resource
CVSS Score
4.3
EPSS Score
0.001
Published
2023-07-26


Contact Us

Shodan ® - All rights reserved