Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-33229


The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds Platform account to append URL parameters to inject passive HTML.


Published

2023-07-26T15:15:10.257

Last Modified

2024-11-21T08:05:11.747

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.5 (LOW)

Weaknesses
  • Type: Primary
    CWE-94
  • Type: Secondary
    CWE-94

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application solarwinds solarwinds_platform < 2023.3.0 Yes

References