Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21883 | A security researcher stored XSS via a Help Server setting. This affects customers using Internet Explorer, because they do not support 'rel=noopener'. |
Solution
SolarWinds recommends installing 2020.2.6 Hotfix 1 for the Orion Platform as soon as it becomes available. All customers should implement all the recommendations from the Orion Secure Configuration Guide.
Workaround
If you are unable to upgrade immediately. See SolarWinds Knowledgebase Article Below: https://support.solarwinds.com/SuccessCenter/s/article/Mitigate-the-Stored-XSS-via-Help-Server-setting-CVE-2021-35240?language=en_US
No history.
Status: PUBLISHED
Assigner: SolarWinds
Published:
Updated: 2024-08-04T00:33:51.240Z
Reserved: 2021-06-22T00:00:00
Link: CVE-2021-35240
No data.
Status : Modified
Published: 2021-08-31T16:15:07.863
Modified: 2024-11-21T06:12:08.003
Link: CVE-2021-35240
No data.
OpenCVE Enrichment
No data.
EUVD