CVE-2023-35181: SolarWinds Access Rights Manager Incorrect Default Permissions Local Privilege Escalation Vulnerability
Published Oct 19, 2023
·Updated
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows users to abuse incorrect folder permission resulting in Privilege Escalation.
Affected Software
1 affected component
SolarWinds Access Rights Manager<=2023.2.0.73
Remediation
Information
All SolarWinds Access Rights Manager customers are advised to upgrade to the latest version of the SolarWinds Access Rights Manager 2023.2.1
Event History
Oct 19, 2023
CVE Published
via MITRE·02:24 PM
Data Sourced
via MITRE·02:24 PM
RemedyDescriptionSeverityWeakness
Data Sourced
03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-35181?
CVE-2023-35181 is a Privilege Escalation Vulnerability in SolarWinds Access Rights Manager, allowing users to abuse incorrect folder permissions.
2
How severe is CVE-2023-35181?
CVE-2023-35181 has a severity score of 7.8 (High).
3
How does CVE-2023-35181 affect SolarWinds Access Rights Manager?
CVE-2023-35181 affects SolarWinds Access Rights Manager by allowing users to escalate their privileges through incorrect folder permissions.
4
What is the fix for CVE-2023-35181?
To fix CVE-2023-35181, it is recommended to apply the latest update or patch provided by SolarWinds.
5
Where can I find more information about CVE-2023-35181?
You can find more information about CVE-2023-35181 on the SolarWinds Trust Center website.