Unrated severityNVD Advisory· Published Oct 20, 2022· Updated May 8, 2025
SolarWinds Platform Deserialization of Untrusted Data
CVE-2022-38108
Description
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Affected products
2- Range: unspecified
- SolarWinds/Orion Platformv5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.