Vulnerability index

Browse CVEs

292 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Access Rights Manager HIGH 8.8
CVE-2024-23467

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an …

Fix: after 2023.2.4
Fix from $1,950 2024-07-17
Access Rights Manager HIGH 8.8
CVE-2024-23469EPSS 18%

SolarWinds Access Rights Manager (ARM) is susceptible to a Remote Code Execution vulnerability. If exploited, this vulnerability allows an unauthenti…

Fix: after 2023.2.4
Fix from $1,950 2024-07-17
Access Rights Manager HIGH 8.3
CVE-2024-23468

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an …

Fix: after 2023.2.4
Fix from $1,950 2024-07-17
Access Rights Manager HIGH 8.8
CVE-2024-23465

The SolarWinds Access Rights Manager was found to be susceptible to an authentication bypass vulnerability. This vulnerability allows an unauthentica…

Fix: after 2023.2.4
Fix from $1,950 2024-07-17
Serv U HIGH 7.5
CVE-2024-28995 KEVEPSS 100%

SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive files on the host machine.

Fix: 15.4.2+
Fix from $1,950 2024-06-06
Solarwinds Platform HIGH 7.5
CVE-2024-28999EPSS 14%

The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console.

Fix: 2024.2+
Fix from $1,950 2024-06-04
Solarwinds Platform HIGH 7.5
CVE-2024-28996

The SolarWinds Platform was determined to be affected by a SWQL Injection Vulnerability. Attack complexity is high for this vulnerability.  

Fix: 2024.2+
Fix from $1,950 2024-06-04
Access Rights Manager HIGH 8.0
CVE-2024-28075EPSS 78%

The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse…

Fix: 2023.2.4+
Fix from $1,950 2024-05-14
Access Rights Manager CRITICAL 9.8
CVE-2024-23473

The SolarWinds Access Rights Manager was found to contain a hard-coded credential authentication bypass vulnerability. If exploited, this vulnerabili…

Fix: 2023.2.4+
Fix from $2,300 2024-05-14
Solarwinds Platform HIGH 7.4
CVE-2024-29001

A SolarWinds Platform SWQL Injection Vulnerability was identified in the user interface. This vulnerability requires authentication and user interact…

Fix: 2024.1.1+
Fix from $1,950 2024-04-18
Serv U HIGH 7.2
CVE-2024-28073

SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability requires a highly privileged acc…

Fix: 15.4.2+
Fix from $1,950 2024-04-17
Security Event Manager HIGH 8.8
CVE-2024-0692EPSS 92%

The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to ab…

Fix: 2023.4.1+
Fix from $1,950 2024-03-01
Access Rights Manager CRITICAL 9.6
CVE-2024-23479EPSS 6%

SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerability. If exploited, this v…

Fix: 2023.2.3+
Fix from $2,300 2024-02-15
Access Rights Manager CRITICAL 9.6
CVE-2024-23476EPSS 7%

The SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerability. If exploited, th…

Fix: 2023.2.3+
Fix from $2,300 2024-02-15
Access Rights Manager CRITICAL 9.6
CVE-2024-23477EPSS 8%

The SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerability. If exploited, th…

Fix: 2023.2.3+
Fix from $2,300 2024-02-15
Access Rights Manager HIGH 8.0
CVE-2024-23478EPSS 82%

SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vulnerability allows …

Fix: 2023.2.3+
Fix from $1,950 2024-02-15
Access Rights Manager CRITICAL 9.0
CVE-2023-40057

The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vulnerability allows an…

Fix: 2023.2.2+
Fix from $2,300 2024-02-15
Solarwinds Platform HIGH 8.0
CVE-2023-35188

SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user aut…

Fix: 2024.1+
Fix from $1,950 2024-02-06
Solarwinds Platform HIGH 8.0
CVE-2023-50395

SQL Injection Remote Code Execution Vulnerability was found using an update statement in the SolarWinds Platform. This vulnerability requires user au…

Fix: 2024.1+
Fix from $1,950 2024-02-06
Access Rights Manager MEDIUM 6.5
CVE-2023-40058

Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Rights Manager (ARM) if …

Fix: after 2023.2.1
Fix from $1,600 2023-12-21
Serv U MEDIUM 5.0
CVE-2023-40053

A vulnerability has been identified within Serv-U 15.4 that allows an authenticated actor to insert content on the file share function feature of Ser…

Mitigation only
Fix from $1,600 2023-12-06
Solarwinds Platform HIGH 8.8
CVE-2023-40056

SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.

Fix: 2023.4.2+
Fix from $1,950 2023-11-28
Network Configuration Manager HIGH 8.8
CVE-2023-40055

The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-leve…

Fix: after 2023.4
Fix from $1,950 2023-11-09
Network Configuration Manager HIGH 8.8
CVE-2023-40054

The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-leve…

Fix: after 2023.4
Fix from $1,950 2023-11-09
Network Configuration Manager HIGH 8.8
CVE-2023-33226

The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-leve…

Fix: 2023.4+
Fix from $1,950 2023-11-01
Network Configuration Manager HIGH 8.8
CVE-2023-33227

The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level …

Fix: 2023.4+
Fix from $1,950 2023-11-01
Solarwinds Platform HIGH 8.8
CVE-2023-40061

 Insecure job execution mechanism vulnerability. This vulnerability can lead to other attacks as a result.

Fix: 2023.4+
Fix from $1,950 2023-11-01
Solarwinds Platform HIGH 8.8
CVE-2023-40062

SolarWinds Platform Incomplete List of Disallowed Inputs Remote Code Execution Vulnerability. If executed, this vulnerability would allow a low-privi…

Fix: 2023.4+
Fix from $1,950 2023-11-01
Access Rights Manager CRITICAL 9.8
CVE-2023-35182

The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability can be abused by unauthenticated user…

Fix: after 2023.2.0.73
Fix from $2,300 2023-10-19
Access Rights Manager CRITICAL 9.8
CVE-2023-35184

The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to abu…

Fix: after 2023.2.0.73
Fix from $2,300 2023-10-19