First published: Tue Jun 04 2024(Updated: )
The SolarWinds Platform was determined to be affected by a SWQL Injection Vulnerability. Attack complexity is high for this vulnerability.
Credit: psirt@solarwinds.com
Affected Software | Affected Version | How to fix |
---|---|---|
SolarWinds Platform | <2024.2 |
SolarWinds recommends that customers upgrade to SolarWinds Platform 2024.2 as soon as it becomes available.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-28996 is classified as having a high attack complexity.
To remediate CVE-2024-28996, upgrade the SolarWinds Platform to version 2024.2 or later.
A SWQL Injection Vulnerability allows attackers to manipulate SWQL queries, potentially leading to unauthorized access or data exposure.
CVE-2024-28996 affects versions of the SolarWinds Platform prior to 2024.2.
Yes, CVE-2024-28996 could potentially be exploited remotely due to its SWQL Injection nature.