SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
2022-10-20T21:15:10.147
2025-05-08T16:15:21.610
Modified
CVSSv3.1: 7.2 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | solarwinds | orion_platform | < 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2020.2.6 | Yes |
Application | solarwinds | orion_platform | 2022.2 | Yes |
Application | solarwinds | orion_platform | 2022.3 | Yes |