VYPR
Critical severity9.8NVD Advisory· Published Jan 28, 2026· Updated Jun 17, 2026

CVE-2025-40553

CVE-2025-40553

Description

SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, which would allow an attacker to run commands on the host machine. This could be exploited without authentication.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:solarwinds:web_help_desk:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:solarwinds:web_help_desk:*:*:*:*:*:*:*:*range: <2026.1
    • (no CPE)
    • (no CPE)range: 12.8.8 HF1 and below

Patches

Vulnerability mechanics

References

3

News mentions

2