CVE-2023-23844: SolarWinds Platform Incomplete List of Disallowed Inputs Vulnerability
The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with SYSTEM privileges.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-23844?
CVE-2023-23844 is the vulnerability that affected the SolarWinds Platform, allowing users with administrative access to SolarWinds Web Console to execute arbitrary commands with SYSTEM privileges.
How does CVE-2023-23844 impact SolarWinds Platform?
CVE-2023-23844 allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with SYSTEM privileges.
What is the severity of CVE-2023-23844?
CVE-2023-23844 has a severity rating of 7.2 (High).
How can I fix CVE-2023-23844?
To fix CVE-2023-23844, it is recommended to apply the necessary security updates provided by SolarWinds.
Where can I find more information about CVE-2023-23844?
You can find more information about CVE-2023-23844 in the SolarWinds security advisories and release notes linked below: - [SolarWinds Security Advisories](https://www.solarwinds.com/trust-center/security-advisories/CVE-2023-23844) - [SolarWinds Platform 2023.3 Release Notes](https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-3_release_notes.htm)