Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2026-28318 KEVEPSS 8%
SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication using Content-Encoding: defl…
Serv U
15.5.4+
CRITICAL 9.8
CVE-2025-40551 KEVEPSS 84%
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, whi…
Web Help Desk
2026.1+
CRITICAL 9.8
CVE-2025-40536 KEVEPSS 72%
SolarWinds Web Help Desk was found to be susceptible to a security control bypass vulnerability that if exploited, could allow an unauthenticated att…
Web Help Desk
2026.1+
CRITICAL 9.8
CVE-2025-26399 KEVEPSS 88%
SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserialization remote code execution vulnerability that, if exp…
Web Help Desk
after 12.8.6
CRITICAL 9.1
CVE-2024-28987 KEVEPSS 93%
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access inter…
Web Help Desk
12.8.3+
CRITICAL 9.8
CVE-2024-28986 KEVEPSS 85%
SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an…
Web Help Desk
after 12.8.2
HIGH 7.5
CVE-2024-28995 KEVEPSS 100%
SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive files on the host machine.
Serv U
15.4.2+
MEDIUM 5.3
CVE-2021-35247 KEV
Serv-U web login screen to LDAP authentication was allowing characters that were not sufficiently sanitized. SolarWinds has updated the input mechani…
Serv U
15.3+
CRITICAL 10.0
CVE-2021-35211 KEVEPSS 91%
Microsoft discovered a remote code execution (RCE) vulnerability in the SolarWinds Serv-U product utilizing a Remote Memory Escape Vulnerability. If …
Serv U
15.2.3+
CRITICAL 9.8
CVE-2020-10148 KEVEPSS 92%
The SolarWinds Orion API is vulnerable to an authentication bypass that could allow a remote attacker to execute API commands. This vulnerability cou…
Orion Platform
Mitigation only
HIGH 7.8
CVE-2016-3643 KEV
SolarWinds Virtualization Manager 6.3.1 and earlier allow local users to gain privileges by leveraging a misconfiguration of sudo, as demonstrated by…
Virtualization Manager
after 6.3.1