First published: Fri Mar 24 2017(Updated: )
The editbanner feature in SolarWinds LEM (aka SIEM) through 6.3.1 allows remote authenticated users to execute arbitrary code by editing /usr/local/contego/scripts/mgrconfig.pl.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SolarWinds Security Event Manager | <=6.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-5199 is classified as a high severity vulnerability that allows remote authenticated users to execute arbitrary code.
To mitigate CVE-2017-5199, users should upgrade SolarWinds LEM to version 6.3.2 or later.
CVE-2017-5199 affects all versions of SolarWinds Log and Event Manager prior to 6.3.2.
CVE-2017-5199 is a code execution vulnerability stemming from the editbanner feature in SolarWinds LEM.
Yes, CVE-2017-5199 can be exploited by remote authenticated users.