CVE-2023-23843: SolarWinds Platform Incorrect Comparison Vulnerability
Published Jul 26, 2023
·Updated
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands.
Affected Software
1 affected component
SolarWinds SolarWinds Platform<2023.3.0
Remediation
Information
All SolarWinds Platform customers are advised to upgrade to the latest version of the SolarWinds Platform version 2023.3
Event History
Jul 26, 2023
CVE Published
via MITRE·01:58 PM
Data Sourced
via MITRE·01:58 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-23843?
CVE-2023-23843 refers to the Incorrect Comparison Vulnerability in the SolarWinds Platform.
2
How does CVE-2023-23843 affect SolarWinds Platform?
CVE-2023-23843 allows users with administrative access to the SolarWinds Web Console to execute arbitrary commands.
3
What is the severity of CVE-2023-23843?
CVE-2023-23843 has a severity rating of high, with a CVSS score of 7.2.
4
Which versions of SolarWinds Platform are affected by CVE-2023-23843?
SolarWinds Platform versions up to and excluding 2023.3.0 are affected by CVE-2023-23843.
5
How can I fix CVE-2023-23843?
To fix CVE-2023-23843, it is recommended to update to a version of SolarWinds Platform that is higher than 2023.3.0.