📦 Solarwinds Platform

by Solarwinds

🔍 What is Solarwinds Platform?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-45717

HIGH CVSS 7.0 Dec 4, 2024

This cross-site scripting (XSS) vulnerability in SolarWinds Platform allows authenticated attackers to inject malicious scripts into the search and node information interface. When exploited, it can l...

CVE-2024-45715

HIGH CVSS 7.1 Oct 16, 2024

This Cross-Site Scripting (XSS) vulnerability in SolarWinds Platform allows attackers to inject malicious scripts when users perform edit operations on existing elements. If exploited, attackers could...

CVE-2024-29004

HIGH CVSS 7.1 Jun 4, 2024

This stored cross-site scripting (XSS) vulnerability in SolarWinds Platform allows a high-privileged user to inject malicious scripts into the web console. When other users interact with the compromis...

CVE-2024-28996

HIGH CVSS 7.5 Jun 4, 2024

This CVE describes a SWQL injection vulnerability in SolarWinds Platform that allows attackers to execute arbitrary database queries. It affects SolarWinds Orion Platform users. Attack complexity is h...

CVE-2024-28076

HIGH CVSS 7.0 Apr 18, 2024

This CVE describes an open redirect vulnerability in SolarWinds Platform where attackers can manipulate URL parameters to redirect users to malicious domains. It affects SolarWinds Platform installati...

CVE-2023-50395

HIGH CVSS 8.0 Feb 6, 2024

This SQL injection vulnerability in SolarWinds Platform allows authenticated attackers to execute arbitrary SQL commands via update statements, potentially leading to remote code execution. It affects...

CVE-2023-40062

HIGH CVSS 8.0 Nov 1, 2023

This vulnerability in SolarWinds Platform allows a low-privileged authenticated user to execute arbitrary code with SYSTEM privileges due to incomplete input validation. It affects SolarWinds Hybrid C...

CVE-2023-23844

HIGH CVSS 7.2 Jul 26, 2023

CVE-2023-23844 is an incorrect comparison vulnerability in SolarWinds Platform that allows authenticated administrators to execute arbitrary commands with SYSTEM privileges. This affects SolarWinds We...

CVE-2023-33224

HIGH CVSS 7.2 Jul 26, 2023

This vulnerability allows administrators of SolarWinds Platform to execute arbitrary commands with NETWORK SERVICE privileges due to incorrect behavior order in the web console. It affects SolarWinds ...

CVE-2024-52612

MEDIUM CVSS 6.8 Feb 11, 2025

SolarWinds Platform contains a reflected cross-site scripting vulnerability that allows authenticated high-privileged attackers to inject malicious scripts into web pages. This vulnerability affects S...