Unrated severityNVD Advisory· Published Sep 4, 2014· Updated May 6, 2026
CVE-2014-5504
CVE-2014-5504
Description
SolarWinds Log and Event Manager before 6.0 uses "static" credentials, which makes it easier for remote attackers to obtain access to the database and execute arbitrary code via unspecified vectors, related to HyperSQL.
Affected products
5cpe:2.3:a:solarwinds:log_and_event_manager:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:solarwinds:log_and_event_manager:*:*:*:*:*:*:*:*range: <=5.7.0
- cpe:2.3:a:solarwinds:log_and_event_manager:5.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:log_and_event_manager:5.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:log_and_event_manager:5.5.0:*:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:log_and_event_manager:5.6.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.