SolarWinds N-central before 12.1 SP1 HF5 and 12.2 before SP1 HF2 allows remote attackers to retrieve cleartext domain admin credentials from the Agent & Probe settings, and obtain other sensitive information. The attacker can use a customer ID to self register and read any aspects of the agent/appliance configuration.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2020-01-26 21:15
Updated : 2024-11-21 05:38
NVD link : CVE-2020-7984
Mitre link : CVE-2020-7984
CVE.ORG link : CVE-2020-7984
JSON object : View
Products Affected
solarwinds
- n-central
CWE
CWE-319
Cleartext Transmission of Sensitive Information