CVE-2023-35185: SolarWinds Access Rights Manager OpenFile Directory Traversal Remote Code Execution Vulnerability
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability using SYSTEM privileges.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-35185?
CVE-2023-35185 refers to a Directory Traversal Remote Code Vulnerability in the SolarWinds Access Rights Manager, allowing an attacker to execute code remotely with SYSTEM privileges.
How severe is the vulnerability CVE-2023-35185?
The severity of CVE-2023-35185 is classified as high, with a severity value of 8.8.
Which version of SolarWinds Access Rights Manager is affected by CVE-2023-35185?
The affected version of SolarWinds Access Rights Manager is up to and inclusive of version 2023.2.0.73.
How can I fix the vulnerability CVE-2023-35185?
To fix CVE-2023-35185, it is recommended to update SolarWinds Access Rights Manager to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2023-35185?
You can find more information about CVE-2023-35185 in the release notes of the SolarWinds Access Rights Manager and the SolarWinds Trust Center security advisories.