Medium severity6.1NVD Advisory· Published Nov 23, 2022· Updated Jun 17, 2026
CVE-2022-38114
CVE-2022-38114
Description
This vulnerability occurs when a web server fails to correctly process the Content-Length of POST requests. This can lead to HTTP request smuggling or XSS.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:solarwinds:security_event_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:solarwinds:security_event_manager:*:*:*:*:*:*:*:*range: <2022.4
- (no CPE)
- SolarWinds/SolarWinds SEMv5Range: 2022.2 and previous versions
Patches
Vulnerability mechanics
References
2- documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2022-4_release_notes.htmnvdRelease NotesVendor Advisory
- www.solarwinds.com/trust-center/security-advisories/CVE-2022-38114nvdVendor Advisory
News mentions
0No linked articles in our index yet.