CVE-2020-13912: High severity solarwinds advanced monitoring agent vulnerability
Published Jun 7, 2020
·Updated
SolarWinds Advanced Monitoring Agent before 10.8.9 allows local users to gain privileges via a Trojan horse .exe file, because everyone can write to a certain .exe file.
Affected Software
1 affected component
SolarWinds Advanced Monitoring Agent<10.8.9
Event History
Jun 7, 2020
CVE Published
via MITRE·08:13 PM
Data Sourced
via MITRE·08:13 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-13912?
CVE-2020-13912 has been classified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2020-13912?
To fix CVE-2020-13912, upgrade the SolarWinds Advanced Monitoring Agent to version 10.8.9 or later.
3
What type of attack can exploit CVE-2020-13912?
CVE-2020-13912 can be exploited via a local privilege escalation attack using a malicious .exe file.
4
Who is affected by CVE-2020-13912?
Local users of SolarWinds Advanced Monitoring Agent versions prior to 10.8.9 are affected by CVE-2020-13912.
5
Can CVE-2020-13912 be exploited remotely?
No, CVE-2020-13912 requires local access to the affected system to exploit.