Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SolarWinds Platform Deserialization of Untrusted Data Vulnerability
Vulnerability Description
SolarWinds Platform version 2022.4.1 was found to be susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to the SolarWinds Web Console to execute arbitrary commands.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
可信数据的反序列化
Vulnerability Title
SolarWinds Platform 代码问题漏洞
Vulnerability Description
SolarWinds Platform是美国SolarWinds公司的一个统一监控、可观察性和服务管理平台。 SolarWinds Platform 2022.4.1版本存在安全漏洞,该漏洞源于容易受到反序列化不可信数据的影响,攻击者利用该漏洞可以访问 SolarWinds Web Console 以执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A