The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to abuse SolarWinds’ service, resulting in remote code execution.
References
Configurations
History
21 Jan 2025, 19:07
Type | Values Removed | Values Added |
---|---|---|
References | () https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm - Release Notes | |
References | () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-0692 - Vendor Advisory | |
First Time |
Solarwinds security Event Manager
Solarwinds |
|
CPE | cpe:2.3:a:solarwinds:security_event_manager:*:*:*:*:*:*:*:* |
Information
Published : 2024-03-01 09:15
Updated : 2025-01-21 19:07
NVD link : CVE-2024-0692
Mitre link : CVE-2024-0692
CVE.ORG link : CVE-2024-0692
JSON object : View
Products Affected
solarwinds
- security_event_manager
CWE
CWE-502
Deserialization of Untrusted Data