Numerous exposed dangerous functions within Orion Core has allows for read-only SQL injection leading to privileged escalation. An attacker with low-user privileges may steal password hashes and password salt information.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Sep 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Numerous exposed dangerous functions within Orion Core has allows for read-only SQL injection leading to privileged escalation. An attacker with low-user privileges may steal password hashes and password salt information. | Numerous exposed dangerous functions within Orion Core has allows for read-only SQL injection leading to privileged escalation. An attacker with low-user privileges may steal password hashes and password salt information. |
MITRE
Status: PUBLISHED
Assigner: SolarWinds
Published: 2021-12-20T20:08:25.522543Z
Updated: 2024-09-16T18:59:20.905Z
Reserved: 2021-06-22T00:00:00
Link: CVE-2021-35234
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-20T21:15:08.057
Modified: 2024-11-21T06:12:07.083
Link: CVE-2021-35234
Redhat
No data.