CVE-2015-5371: Critical severity solarwinds vulnerability
Published Jul 6, 2015
·Updated
The AuthenticationFilter class in SolarWinds Storage Manager allows remote attackers to upload and execute arbitrary scripts via unspecified vectors.
Affected Software
1 affected component
SolarWinds Storage Manager
Event History
Jul 6, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5371?
CVE-2015-5371 has been assigned a medium severity due to its potential to allow remote attackers to execute arbitrary scripts.
2
How do I fix CVE-2015-5371?
To remediate CVE-2015-5371, it is recommended to update to the latest version of SolarWinds Storage Manager that addresses this vulnerability.
3
What types of attacks can be executed due to CVE-2015-5371?
CVE-2015-5371 can allow remote attackers to upload and execute arbitrary scripts on the affected system.
4
Which version of SolarWinds Storage Manager is affected by CVE-2015-5371?
CVE-2015-5371 affects all versions of SolarWinds Storage Manager prior to the security patch.
5
Is CVE-2015-5371 a zero-day exploit?
CVE-2015-5371 is not classified as a zero-day exploit since it has been publicly disclosed and a patch is available.