Vulnerability index

Browse CVEs

292 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Access Rights Manager CRITICAL 9.8
CVE-2023-35187

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability allows an unauthenticated…

Fix: after 2023.2.0.73
Fix from $2,300 2023-10-19
Access Rights Manager HIGH 8.8
CVE-2023-35186

The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse…

Fix: after 2023.2.0.73
Fix from $1,950 2023-10-19
Access Rights Manager HIGH 7.8
CVE-2023-35183

The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows authenticated users to abuse lo…

Fix: after 2023.2.0.73
Fix from $1,950 2023-10-19
Access Rights Manager MEDIUM 6.8
CVE-2023-35185

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability using SYSTEM privileges.

Fix: after 2023.2.0.73
Fix from $1,600 2023-10-19
Access Rights Manager HIGH 8.8
CVE-2023-35180EPSS 27%

The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows authenticated users to abuse S…

Fix: after 2023.2.0.73
Fix from $1,950 2023-10-19
Access Rights Manager HIGH 7.8
CVE-2023-35181

The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows users to abuse incorrect folder…

Fix: after 2023.2.0.73
Fix from $1,950 2023-10-19
Orion Platform HIGH 7.2
CVE-2023-23845EPSS 5%

The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola…

Fix: 2023.3.1+
Fix from $1,950 2023-09-13
Orion Platform HIGH 7.2
CVE-2023-23840EPSS 5%

The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola…

Fix: 2023.3.1+
Fix from $1,950 2023-09-13
Serv U HIGH 7.2
CVE-2023-40060

A vulnerability has been identified within Serv-U 15.4 and 15.4 Hotfix 1 that, if exploited, allows an actor to bypass multi-factor/two-factor authen…

Mitigation only
Fix from $1,950 2023-09-07
Serv U HIGH 7.2
CVE-2023-35179

A vulnerability has been identified within Serv-U 15.4 that, if exploited, allows an actor to bypass multi-factor/two-factor authentication. The acto…

Mitigation only
Fix from $1,950 2023-08-11
Network Configuration Monitor HIGH 7.2
CVE-2023-23842

The SolarWinds Network Configuration Manager was susceptible to the Directory Traversal Vulnerability. This vulnerability allows users with administr…

Fix: 2023.3.0+
Fix from $1,950 2023-07-26
Solarwinds Platform HIGH 7.2
CVE-2023-23843

The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola…

Fix: 2023.3.0+
Fix from $1,950 2023-07-26
Solarwinds Platform HIGH 7.2
CVE-2023-23844

The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola…

Fix: 2023.3.0+
Fix from $1,950 2023-07-26
Solarwinds Platform HIGH 7.2
CVE-2023-33224

The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability. This vulnerability allows users with administrative access to …

Fix: 2023.3.0+
Fix from $1,950 2023-07-26
Solarwinds Platform HIGH 7.2
CVE-2023-33225

The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola…

Fix: 2023.3.0+
Fix from $1,950 2023-07-26
Database Performance Analyzer MEDIUM 6.1
CVE-2023-33231

XSS attack was possible in DPA 2023.2 due to insufficient input validation

Fix: 2023.2.100+
Fix from $1,600 2023-07-18
Serv U HIGH 7.5
CVE-2023-23841

SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File Share or File request.  Part of the URL of the requ…

Fix: 15.4+
Fix from $1,950 2023-06-15
Solarwinds Platform MEDIUM 6.5
CVE-2023-23839

The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCo…

Fix: 2023.2.0+
Fix from $1,600 2023-04-25
Database Performance Analyzer HIGH 7.5
CVE-2023-23837

No exception handling vulnerability which revealed sensitive or excessive information to users.

Fix: 2023.2+
Fix from $1,950 2023-04-25
Database Performance Analyzer MEDIUM 6.5
CVE-2023-23838

Directory traversal and file enumeration vulnerability which allowed users to enumerate to different folders of the server.

Fix: 2023.2+
Fix from $1,600 2023-04-25
Orion Platform HIGH 7.8
CVE-2022-47505

The SolarWinds Platform was susceptible to the Local Privilege Escalation Vulnerability. This vulnerability allows a local adversary with a valid sys…

Fix: 2023.2+
Fix from $1,950 2023-04-21
Orion Platform HIGH 7.2
CVE-2022-36963EPSS 8%

The SolarWinds Platform was susceptible to the Command Injection Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds …

Fix: 2023.2+
Fix from $1,950 2023-04-21
Orion Platform MEDIUM 6.1
CVE-2022-47509

The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a vali…

Fix: 2023.2+
Fix from $1,600 2023-04-21
Orion Platform HIGH 7.2
CVE-2023-23836EPSS 80%

SolarWinds Platform version 2022.4.1 was found to be susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa…

Mitigation only
Fix from $1,950 2023-02-15
Orion Platform HIGH 7.8
CVE-2022-47506

SolarWinds Platform was susceptible to the Directory Traversal Vulnerability. This vulnerability allows a local adversary with authenticated account …

Mitigation only
Fix from $1,950 2023-02-15
Server And Application Monitor HIGH 7.5
CVE-2022-47508

Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for dat…

Mitigation only
Fix from $1,950 2023-02-15
Orion Platform HIGH 7.2
CVE-2022-47507EPSS 7%

SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc…

Mitigation only
Fix from $1,950 2023-02-15
Orion Platform HIGH 7.2
CVE-2022-38111EPSS 85%

SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc…

Mitigation only
Fix from $1,950 2023-02-15
Orion Platform HIGH 7.2
CVE-2022-47503EPSS 24%

SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc…

Mitigation only
Fix from $1,950 2023-02-15
Orion Platform HIGH 7.2
CVE-2022-47504EPSS 25%

SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc…

Mitigation only
Fix from $1,950 2023-02-15