VYPR

NPM

by SolarWinds

CVEs (2)

  • CVE-2019-12864MedMay 4, 2020
    risk 0.36cvss 5.5epss 0.00

    SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) is vulnerable to Information Leakage, because of improper error handling with stack traces, as demonstrated by discovering a full pathname upon a 500 Internal Server Error via the…

  • CVE-2021-35225MedOct 21, 2021
    risk 0.33cvss 5.0epss 0.01

    Each authenticated Orion Platform user in a MSP (Managed Service Provider) environment can view and browse all NetPath Services from all that MSP's customers. This can lead to any user having a limited insight into other customer's infrastructure and potential data…