High severity8.0NVD Advisory· Published Nov 9, 2023· Updated Jun 17, 2026
CVE-2023-40054
CVE-2023-40054
Description
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges. We found this issue was not resolved in CVE-2023-33226
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:solarwinds:network_configuration_manager:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:solarwinds:network_configuration_manager:*:*:*:*:*:*:*:*range: <=2023.4
- (no CPE)
- (no CPE)range: 2023.4 and previous versions
Patches
Vulnerability mechanics
References
2- documentation.solarwinds.com/en/success_center/ncm/content/release_notes/ncm_2023-4-1_release_notes.htmnvdRelease NotesVendor Advisory
- www.solarwinds.com/trust-center/security-advisories/CVE-2023-40054nvdVendor Advisory
News mentions
0No linked articles in our index yet.