CVE-2024-52606

SolarWinds Platform is affected by server-side request forgery vulnerability. Proper input sanitation was not applied allowing for the possibility of a malicious web request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*

History

25 Feb 2025, 17:35

Type Values Removed Values Added
References () https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2025-1_release_notes.htm - () https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2025-1_release_notes.htm - Release Notes
References () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-52606 - () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-52606 - Vendor Advisory
CPE cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*
Summary
  • (es) La plataforma SolarWinds se ve afectada por la vulnerabilidad server-side request forgery. No se aplicó la depuración de entrada adecuada, lo que permitió la posibilidad de una solicitud web maliciosa.
First Time Solarwinds
Solarwinds solarwinds Platform

11 Feb 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-11 08:15

Updated : 2025-02-25 17:35


NVD link : CVE-2024-52606

Mitre link : CVE-2024-52606

CVE.ORG link : CVE-2024-52606


JSON object : View

Products Affected

solarwinds

  • solarwinds_platform
CWE
CWE-918

Server-Side Request Forgery (SSRF)