High severity8.8NVD Advisory· Published Nov 29, 2022· Updated Jun 17, 2026
CVE-2022-36964
CVE-2022-36964
Description
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with valid access to SolarWinds Web Console to execute arbitrary commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:a:solarwinds:orion_platform:*:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:solarwinds:orion_platform:*:*:*:*:*:*:*:*range: <2020.2.6
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:-:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:hotfix1:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:hotfix2:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:hotfix3:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:hotfix4:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2020.2.6:hotfix5:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2022.2:*:*:*:*:*:*:*
- cpe:2.3:a:solarwinds:orion_platform:2022.3:*:*:*:*:*:*:*
- (no CPE)range: 2020.2.6 HF5 and prior versions
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 2022.3 and prior versions
Patches
Vulnerability mechanics
References
2- documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2022-4_release_notes.htmnvdRelease NotesVendor Advisory
- www.solarwinds.com/trust-center/security-advisories/CVE-2022-36964nvdVendor Advisory
News mentions
0No linked articles in our index yet.