Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SolarWinds Platform Incorrect Input Neutralization Vulnerability
Vulnerability Description
The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds Platform account to append URL parameters to inject passive HTML.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
SolarWinds Platform 代码注入漏洞
Vulnerability Description
SolarWinds Platform是美国SolarWinds公司的一个统一监控、可观察性和服务管理平台。 SolarWinds Platform 2023.3之前版本存在安全漏洞,该漏洞源于洞允许拥有SolarWinds Platform 帐户权限的远程攻击者通过 URL 参数进行HTML注入。
CVSS Information
N/A
Vulnerability Type
N/A