VYPR

Orion Web Performance Monitor

by SolarWinds

CVEs (4)

  • CVE-2020-14005HigJun 24, 2020
    risk 0.58cvss 8.8epss 0.14

    Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows remote attackers to execute arbitrary code via a defined event.

  • CVE-2020-14007MedJun 24, 2020
    risk 0.35cvss 5.4epss 0.01

    Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a name of an alert definition.

  • CVE-2020-14006MedJun 24, 2020
    risk 0.35cvss 5.4epss 0.01

    Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a Responsible Team.

  • CVE-2014-9566Mar 10, 2015
    risk 0.00cvss epss 0.48

    Multiple SQL injection vulnerabilities in the Manage Accounts page in the AccountManagement.asmx service in the Solarwinds Orion Platform 2015.1, as used in Network Performance Monitor (NPM) before 11.5, NetFlow Traffic Analyzer (NTA) before 4.1, Network Configuration Manager…