Solarwinds Orion Platform是美国Solarwinds公司的一套网络故障和网络性能管理平台。该平台可对网络设备提供实时监测和分析,并支持定制网页介面、多种用户意见和对整个网络进行地图式浏览等。 SolarWinds Orion Platform 存在安全漏洞,该漏洞源于ExportToPdfCmd 使用警报设置页面中的 ImportAlert 功能存在漏洞。攻击者可利用该漏洞造成任意文件读取信息泄露。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| SolarWinds | Orion Platform | 2020.2.6 and previous versions ~ 2020.2.6 HF1 | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|
未找到公开 POC。
登录以生成 AI POC| CVE-2021-35212 | 8.9 HIGH | Solarwinds Orion Platform SQL注入漏洞 |
| CVE-2021-35213 | 8.9 HIGH | Solarwinds Orion Platform 安全漏洞 |
| CVE-2021-35223 | 8.5 HIGH | SolarWinds Serv-U File Server 安全漏洞 |
| CVE-2021-35220 | 8.1 HIGH | SolarWinds Orion Platform 命令注入漏洞 |
| CVE-2021-35222 | 8.0 HIGH | SolarWinds Orion Platform 跨站脚本漏洞 |
| CVE-2021-35239 | 7.5 HIGH | Solarwinds Orion Platform 跨站脚本漏洞 |
| CVE-2021-35240 | 6.5 MEDIUM | Solarwinds Orion Platform 跨站脚本漏洞 |
| CVE-2021-35221 | 6.3 MEDIUM | SolarWinds Orion Platform 安全漏洞 |
暂无评论