SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited.
No analysis available yet.
Vendor Solution
SolarWinds recommends that customers upgrade to the SolarWinds Platform 2024.1
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-39191 | SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited. |
Thu, 15 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: SolarWinds
Published:
Updated: 2025-05-15T19:44:21.642Z
Reserved: 2023-06-14T20:03:23.108Z
Link: CVE-2023-35188
Updated: 2024-08-02T16:23:59.615Z
Status : Analyzed
Published: 2024-02-06T16:15:51.140
Modified: 2026-06-17T06:04:35.090
Link: CVE-2023-35188
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD