First published: Wed Jul 26 2023(Updated: )
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands.
Credit: psirt@solarwinds.com psirt@solarwinds.com
Affected Software | Affected Version | How to fix |
---|---|---|
SolarWinds Platform | <2023.3.0 |
All SolarWinds Platform customers are advised to upgrade to the latest version of the SolarWinds Platform version 2023.3
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23843 refers to the Incorrect Comparison Vulnerability in the SolarWinds Platform.
CVE-2023-23843 allows users with administrative access to the SolarWinds Web Console to execute arbitrary commands.
CVE-2023-23843 has a severity rating of high, with a CVSS score of 7.2.
SolarWinds Platform versions up to and excluding 2023.3.0 are affected by CVE-2023-23843.
To fix CVE-2023-23843, it is recommended to update to a version of SolarWinds Platform that is higher than 2023.3.0.