SolarWinds Platform是美国SolarWinds公司的一个统一监控、可观察性和服务管理平台。 SolarWinds Platform存在命令注入漏洞,该漏洞源于容易受到命令注入的影响,允许远程攻击者完全控制SolarWinds数据库以执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SolarWinds | SolarWinds Platform | 2022.3 and prior versions ~ 2022.3 | - |
|
| SolarWinds | Orion Platform | 2020.2.6 HF5 and prior versions ~ 2020.2.6 HF5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-36964 | 8.8 HIGH | SolarWinds Platform Deserialization of Untrusted Data |
| CVE-2022-36960 | 8.8 HIGH | SolarWinds Platform Improper Input Validation |
No comments yet