The vulnerability in SolarWinds Pingdom can be described as a failure to invalidate user session upon password or email address change. When running multiple active sessions in separate browser windows, it was observed a password or email address change could be changed without terminating the user session. This issue has been resolved on September 13, 2021.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: SolarWinds
Published: 2021-10-12T15:18:07
Updated: 2024-08-04T00:33:51.181Z
Reserved: 2021-06-22T00:00:00
Link: CVE-2021-35214
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-10-12T16:15:07.370
Modified: 2024-11-21T06:12:04.480
Link: CVE-2021-35214
Redhat
No data.