CVE-2023-33224

The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with NETWORK SERVICE privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*

History

02 Aug 2023, 20:52

Type Values Removed Values Added
CWE NVD-CWE-Other
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2
References (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-3_release_notes.htm - (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-3_release_notes.htm - Release Notes, Vendor Advisory
References (MISC) https://www.solarwinds.com/trust-center/security-advisories/cve-2023-33224 - (MISC) https://www.solarwinds.com/trust-center/security-advisories/cve-2023-33224 - Vendor Advisory
CPE cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*
First Time Solarwinds solarwinds Platform
Solarwinds

26 Jul 2023, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-26 14:15

Updated : 2023-08-03 21:15


NVD link : CVE-2023-33224

Mitre link : CVE-2023-33224


JSON object : View

Products Affected

solarwinds

  • solarwinds_platform