The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse SolarWinds service resulting in remote code execution.
We thank Trend Micro Zero Day Initiative (ZDI) for its ongoing partnership in coordinating with SolarWinds on responsible disclosure of this and other potential vulnerabilities.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: SolarWinds
Published: 2024-05-09T12:42:44.975Z
Updated: 2024-08-02T00:48:48.249Z
Reserved: 2024-03-01T08:53:44.513Z
Link: CVE-2024-28075
Vulnrichment
Updated: 2024-08-02T00:48:48.249Z
NVD
Status : Awaiting Analysis
Published: 2024-05-14T15:13:53.397
Modified: 2024-05-14T16:13:02.773
Link: CVE-2024-28075
Redhat
No data.