VYPR

Vendor CVEs

SolarWinds

All CVEs

342 total · sorted by risk
  • CVE-2022-38107MedOct 19, 2022
    risk 0.34cvss 5.3epss 0.01

    Sensitive information could be displayed when a detailed technical error message is posted. This information could disclose environmental details.

  • CVE-2024-45713MedOct 17, 2024
    risk 0.33cvss 5.1epss 0.00

    SolarWinds Kiwi CatTools is susceptible to a sensitive data disclosure vulnerability when a non-default setting has been enabled for troubleshooting purposes.

  • CVE-2023-40053MedDec 6, 2023
    risk 0.33cvss 5.0epss 0.01

    A vulnerability has been identified within Serv-U 15.4 that allows an authenticated actor to insert content on the file share function feature of Serv-U, which could be used maliciously.

  • CVE-2021-35237MedOct 29, 2021
    risk 0.33cvss 5.0epss 0.01

    A missing HTTP header (X-Frame-Options) in Kiwi Syslog Server has left customers vulnerable to click jacking. Clickjacking is an attack that occurs when an attacker uses a transparent iframe in a window to trick a user into clicking on an actionable item, such as a button or…

  • CVE-2021-35225MedOct 21, 2021
    risk 0.33cvss 5.0epss 0.01

    Each authenticated Orion Platform user in a MSP (Managed Service Provider) environment can view and browse all NetPath Services from all that MSP's customers. This can lead to any user having a limited insight into other customer's infrastructure and potential data…

  • CVE-2018-19934MedMar 21, 2019
    risk 0.32cvss 4.8epss 0.05

    SolarWinds Serv-U FTP Server 15.1.6.25 has reflected cross-site scripting (XSS) in the Web management interface via URL path and HTTP POST parameter.

  • CVE-2017-9538MedOct 3, 2017
    risk 0.32cvss 4.9epss 0.02

    The 'Upload logo from external path' function of SolarWinds Network Performance Monitor version 12.0.15300.90 allows remote attackers to cause a denial of service (permanent display of a "Cannot exit above the top directory" error message throughout the entire web application)…

  • CVE-2026-28301MedJun 9, 2026
    risk 0.31cvss 4.8epss 0.00

    A vulnerability in which an attacker can provide a crafted external URL that may redirect a user to an unintended website.

  • CVE-2025-40545MedNov 18, 2025
    risk 0.31cvss 4.8epss 0.00

    SolarWinds Observability Self-Hosted is susceptible to an open redirection vulnerability. The URL is not properly sanitized, and an attacker could manipulate the string to redirect a user to a malicious site. The attack complexity is high, and authentication is required.

  • CVE-2025-26394MedJun 10, 2025
    risk 0.31cvss 4.8epss 0.00

    SolarWinds Observability Self-Hosted is susceptible to an open redirection vulnerability. The URL is not properly sanitized, and an attacker could manipulate the string to redirect a user to a malicious site. The attack complexity is high, and authentication is required.

  • CVE-2024-45714MedOct 16, 2024
    risk 0.31cvss 4.8epss 0.01

    Application is vulnerable to Cross Site Scripting (XSS) an authenticated attacker with users’ permissions can modify a variable with a payload.

  • CVE-2021-35227MedOct 21, 2021
    risk 0.31cvss 4.7epss 0.00

    The HTTP interface was enabled for RabbitMQ Plugin in ARM 2020.2.6 and the ability to configure HTTPS was not available.

  • CVE-2021-35214MedOct 12, 2021
    risk 0.31cvss 4.8epss 0.02

    The vulnerability in SolarWinds Pingdom can be described as a failure to invalidate user session upon password or email address change. When running multiple active sessions in separate browser windows, it was observed a password or email address change could be changed without…

  • CVE-2021-35238MedSep 1, 2021
    risk 0.31cvss 4.8epss 0.01

    User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.

  • CVE-2020-22428MedMay 5, 2021
    risk 0.31cvss 4.8epss 0.01

    SolarWinds Serv-U before 15.1.6 Hotfix 3 is affected by Cross Site Scripting (XSS) via a directory name (entered by an admin) containing a JavaScript payload.

  • CVE-2021-3109MedMar 26, 2021
    risk 0.31cvss 4.8epss 0.01

    The custom menu item options page in SolarWinds Orion Platform before 2020.2.5 allows Reverse Tabnabbing in the context of an administrator account.

  • CVE-2020-35856MedMar 26, 2021
    risk 0.31cvss 4.8epss 0.01

    SolarWinds Orion Platform before 2020.2.5 allows stored XSS attacks by an administrator on the Customize View page.

  • CVE-2020-15910MedOct 19, 2020
    risk 0.31cvss 4.7epss 0.06

    SolarWinds N-Central version 12.3 GA and lower does not set the JSESSIONID attribute to HTTPOnly. This makes it possible to influence the cookie with javascript. An attacker could send the user to a prepared webpage or by influencing JavaScript to the extract the JESSIONID. This…

  • CVE-2019-12863MedFeb 25, 2020
    risk 0.31cvss 4.8epss 0.01

    SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the Web Console Settings screen.

  • CVE-2017-9537MedOct 3, 2017
    risk 0.31cvss 4.8epss 0.03

    Persistent cross-site scripting (XSS) in the Add Node function of SolarWinds Network Performance Monitor version 12.0.15300.90 allows remote attackers to introduce arbitrary JavaScript into various vulnerable parameters.

  • CVE-2016-5709MedJun 24, 2016
    risk 0.31cvss 4.7epss 0.01

    SolarWinds Virtualization Manager 6.3.1 and earlier uses weak encryption to store passwords in /etc/shadow, which allows local users with superuser privileges to obtain user passwords via a brute force attack.

  • CVE-2024-45718MedFeb 11, 2025
    risk 0.30cvss 4.6epss 0.00

    Sensitive data could be exposed to non- privileged users in a configuration file. Local access to the computer with a low- privileged account is required to access the configuration file containing the sensitive data.

  • CVE-2023-33228MedNov 1, 2023
    risk 0.29cvss 4.5epss 0.00

    The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to obtain sensitive information.

  • CVE-2020-25619MedDec 16, 2020
    risk 0.29cvss 4.4epss 0.00

    An issue was discovered in SolarWinds N-Central 12.3.0.670. The SSH component does not restrict the Communication Channel to Intended Endpoints. An attacker can leverage an SSH feature (port forwarding with a temporary key pair) to access network services on the 127.0.0.1…

  • CVE-2023-3622MedJul 26, 2023
    risk 0.28cvss 4.3epss 0.01

    Access Control Bypass Vulnerability in the SolarWinds Platform that allows an underprivileged user to read arbitrary resource

  • CVE-2021-35249MedMay 17, 2022
    risk 0.28cvss 4.3epss 0.01

    This broken access control vulnerability pertains specifically to a domain admin who can access configuration & user data of other domains which they should not have access to. Please note the admin is unable to modify the data (read only operation). This UAC issue leads to a…

  • CVE-2024-52611LowFeb 11, 2025
    risk 0.23cvss 3.5epss 0.00

    The SolarWinds Platform is vulnerable to an information disclosure vulnerability through an error message. While the data does not provide anything sensitive, the information could assist an attacker in other malicious actions.

  • CVE-2024-52606LowFeb 11, 2025
    risk 0.23cvss 3.5epss 0.02

    SolarWinds Platform is affected by server-side request forgery vulnerability. Proper input sanitation was not applied allowing for the possibility of a malicious web request.

  • CVE-2023-33229LowJul 26, 2023
    risk 0.23cvss 3.5epss 0.01

    The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds Platform account to append URL parameters to inject passive HTML.

  • CVE-2021-35236LowOct 27, 2021
    risk 0.20cvss 3.1epss 0.01

    The Secure flag is not set in the SSL Cookie of Kiwi Syslog Server 9.7.2 and previous versions. The Secure attribute tells the browser to only send the cookie if the request is being sent over a secure channel such as HTTPS. This will help protect the cookie from being passed…

  • CVE-2024-45712LowApr 15, 2025
    risk 0.17cvss 2.6epss 0.00

    SolarWinds Serv-U is vulnerable to a client-side cross-site scripting (XSS) vulnerability. The vulnerability can only be performed by an authenticated account, on the local machine, from the local browser session. Therefore the risk is very low.

  • CVE-2015-5371Jul 6, 2015
    risk 0.10cvss epss 0.93

    The AuthenticationFilter class in SolarWinds Storage Manager allows remote attackers to upload and execute arbitrary scripts via unspecified vectors.

  • CVE-2009-4006Nov 20, 2009
    risk 0.10cvss epss 0.83

    Stack-based buffer overflow in the TEA decoding algorithm in RhinoSoft Serv-U FTP server 7.0.0.1, 9.0.0.5, and other versions before 9.1.0.0 allows remote attackers to execute arbitrary code via a long hexadecimal string.

  • CVE-2004-2111Dec 31, 2004
    risk 0.10cvss epss 0.87

    Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.

  • CVE-2004-0330Nov 23, 2004
    risk 0.10cvss epss 0.85

    Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time zone argument to the MDTM command.

  • CVE-2015-2284Mar 24, 2015
    risk 0.09cvss epss 0.73

    userlogin.jsp in SolarWinds Firewall Security Manager (FSM) before 6.6.5 HotFix1 allows remote attackers to gain privileges and execute arbitrary code via unspecified vectors, related to client session handling.

  • CVE-2010-2115May 28, 2010
    risk 0.07cvss epss 0.56

    SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request.

  • CVE-2012-4939Oct 31, 2012
    risk 0.04cvss epss 0.07

    Cross-site scripting (XSS) vulnerability in IPAMSummaryView.aspx in the IPAM web interface before 3.0-HotFix1 in SolarWinds Orion Network Performance Monitor might allow remote attackers to inject arbitrary web script or HTML via the "Search for an IP address" field.

  • CVE-2012-2577Aug 12, 2012
    risk 0.04cvss epss 0.10

    Multiple cross-site scripting (XSS) vulnerabilities in SolarWinds Orion Network Performance Monitor (NPM) before 10.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) syslocation, (2) syscontact, or (3) sysName field of an snmpd.conf file.

  • CVE-2011-4800Dec 14, 2011
    risk 0.04cvss epss 0.07

    Directory traversal vulnerability in Serv-U FTP Server before 11.1.0.5 allows remote authenticated users to read and write arbitrary files, and list and create arbitrary directories, via a "..:/" (dot dot colon forward slash) in the (1) list, (2) put, or (3) get commands.

  • CVE-2010-2310Jun 16, 2010
    risk 0.04cvss epss 0.11

    SolarWinds TFTP Server 10.4.0.13 allows remote attackers to cause a denial of service (crash) via a long write request.

  • CVE-2009-3115Sep 9, 2009
    risk 0.04cvss epss 0.11

    SolarWinds TFTP Server 9.2.0.111 and earlier allows remote attackers to cause a denial of service (service stop) via a crafted Option Acknowledgement (OACK) request. NOTE: some of these details are obtained from third party information.

  • CVE-2009-1031Mar 20, 2009
    risk 0.04cvss epss 0.11

    Directory traversal vulnerability in the FTP server in Rhino Software Serv-U File Server 7.0.0.1 through 7.4.0.1 allows remote attackers to create arbitrary directories via a \.. (backslash dot dot) in an MKD request.

  • CVE-2009-0967Mar 19, 2009
    risk 0.04cvss epss 0.07

    The FTP server in Serv-U 7.0.0.1 through 7.4.0.1 allows remote authenticated users to cause a denial of service (service hang) via a large number of SMNT commands without an argument.

  • CVE-2008-4501Oct 9, 2008
    risk 0.04cvss epss 0.11

    Directory traversal vulnerability in the FTP server in Serv-U 7.0.0.1 through 7.3, including 7.2.0.1, allows remote authenticated users to overwrite or create arbitrary files via a ..\ (dot dot backslash) in the RNTO command.

  • CVE-2008-4500Oct 9, 2008
    risk 0.04cvss epss 0.10

    Serv-U 7.0.0.1 through 7.3, including 7.2.0.1, allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted stou command, probably related to MS-DOS device names, as demonstrated using "con:1".

  • CVE-2004-2532Dec 31, 2004
    risk 0.04cvss epss 0.15

    Serv-U FTP server before 5.1.0.0 has a default account and password for local administration, which allows local users to execute arbitrary commands by connecting to the server using the default administrator account, creating a new user, logging in as that new user, and then…

  • CVE-2004-1675Sep 11, 2004
    risk 0.04cvss epss 0.12

    Serv-U FTP server 4.x and 5.x allows remote attackers to cause a denial of service (application crash) via a STORE UNIQUE (STOU) command with an MS-DOS device name argument such as (1) COM1, (2) LPT1, (3) PRN, or (4) AUX.

  • CVE-2004-1992Apr 20, 2004
    risk 0.04cvss epss 0.11

    Buffer overflow in Serv-U FTP server before 5.0.0.6 allows remote attackers to cause a denial of service (crash) via a long -l parameter, which triggers an out-of-bounds read.

  • CVE-2002-1542Mar 31, 2003
    risk 0.04cvss epss 0.13

    SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP datagram, possibly triggering a buffer overflow.

Page 6 of 7