Unrated severityNVD Advisory· Published Oct 20, 2022· Updated May 5, 2025
SolarWinds Platform Deserialization of Untrusted Data
CVE-2022-36957
Description
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Affected products
2- Range: unspecified
- SolarWinds/Orion Platformv5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.