CVE-2015-7838: Input Validation
Published Oct 15, 2015
·Updated
ProcessFileUpload.jsp in SolarWinds Storage Manager before 6.2 allows remote attackers to upload and execute arbitrary files via unspecified vectors.
Affected Software
1 affected component
SolarWinds Storage Manager<=6.1
Event History
Oct 15, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7838?
CVE-2015-7838 is a significant vulnerability as it allows remote attackers to upload and execute arbitrary files.
2
How do I fix CVE-2015-7838?
To fix CVE-2015-7838, upgrade SolarWinds Storage Manager to version 6.2 or later.
3
What versions of SolarWinds Storage Manager are affected by CVE-2015-7838?
CVE-2015-7838 affects SolarWinds Storage Manager versions prior to 6.2.
4
What kind of attacks can be executed using CVE-2015-7838?
CVE-2015-7838 can be exploited to perform remote file uploads and execute arbitrary code on the server.
5
Is CVE-2015-7838 a known vulnerability?
Yes, CVE-2015-7838 is a known vulnerability documented in various security advisories.