First published: Wed Nov 01 2023(Updated: )
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.
Credit: psirt@solarwinds.com
Affected Software | Affected Version | How to fix |
---|---|---|
SolarWinds Network Configuration Manager | <2023.4 |
All Network Configuration Manager customers are advised to upgrade to the latest version of the Network Configuration Manager Version 2023.4
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-33227.
The title of this vulnerability is Directory Traversal Remote Code Execution Vulnerability.
The severity of CVE-2023-33227 is high with a severity value of 8.
SolarWinds Network Configuration Manager with version up to exclusive 2023.4 is affected by CVE-2023-33227.
Yes, a fix is available. Please refer to the SolarWinds documentation for more information.