The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse SolarWinds service resulting in remote code execution.
We thank Trend Micro Zero Day Initiative (ZDI) for its ongoing partnership in coordinating with SolarWinds on responsible disclosure of this and other potential vulnerabilities.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: SolarWinds
Published: 2024-05-09T12:42:44.975Z
Updated: 2024-06-05T16:14:26.541Z
Reserved: 2024-03-01T08:53:44.513Z
Link: CVE-2024-28075
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-14T15:13:53.397
Modified: 2024-05-14T16:13:02.773
Link: CVE-2024-28075
JSON object: View
Redhat Information
No data.
CWE