CVE-2021-35251: Sensitive Data Disclosure Vulnerability
Published Mar 9, 2022
·Updated
Sensitive information could be displayed when a detailed technical error message is posted. This information could disclose environmental details about the Web Help Desk installation.
Affected Software
1 affected component
SolarWinds Web Help Desk<12.7.8
Remediation
Information
SolarWinds advises to upgrade to the latest version of Web Help Desk
(WHD 12.7.8).
Event History
Mar 9, 2022
CVE Published
via MITRE·03:38 PM
Data Sourced
via MITRE·03:38 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-35251.
2
What is the severity of CVE-2021-35251?
The severity of CVE-2021-35251 is medium.
3
How can sensitive information be displayed in this vulnerability?
Sensitive information can be displayed when a detailed technical error message is posted.
4
What software is affected by CVE-2021-35251?
The SolarWinds Web Help Desk version 12.7.8 is affected by CVE-2021-35251.
5
How can I fix CVE-2021-35251?
To fix CVE-2021-35251, update to a version of SolarWinds Web Help Desk that is later than 12.7.8.