CVE-2023-35184: SolarWinds Access Rights Manager Deserialization of Untrusted Data Remote Code Execution Vulnerability
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to abuse a SolarWinds service resulting in a remote code execution.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this SolarWinds vulnerability?
The vulnerability ID is CVE-2023-35184.
What is the severity of CVE-2023-35184?
The severity of CVE-2023-35184 is critical with a CVSS score of 9.8.
Which software is affected by CVE-2023-35184?
The SolarWinds Access Rights Manager version 2023.2.0.73 is affected by CVE-2023-35184.
How can an unauthenticated user abuse the SolarWinds service?
An unauthenticated user can abuse the SolarWinds service to perform remote code execution.
Are there any references available for CVE-2023-35184?
Yes, you can find references for CVE-2023-35184 at the following URLs: - https://documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-1_release_notes.htm - https://www.solarwinds.com/trust-center/security-advisories/CVE-2023-35184