First published: Wed Dec 16 2020(Updated: )
An issue was discovered in SolarWinds N-Central 12.3.0.670. The local database does not require authentication: security is only based on ability to access a network interface. The database has keys and passwords.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SolarWinds N-Central | =12.3.0.670 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-25621 has been classified as a critical vulnerability due to its potential for unauthorized access to sensitive information.
To fix CVE-2020-25621, you should update SolarWinds N-Central to a version that requires authentication for the local database access.
The risks of CVE-2020-25621 include unauthorized access to the database containing keys and passwords, which could lead to further exploitation.
CVE-2020-25621 affects users of SolarWinds N-Central version 12.3.0.670.
There are no known workarounds for CVE-2020-25621; the best approach is to apply security updates as they are released.