CVE-2024-28999: SolarWinds Platform Race Condition Vulnerability
Published Jun 4, 2024
·Updated
The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console.
Credit
Elhussain Fathy
Affected Software
1 affected component
SolarWinds SolarWinds Platform<2024.2
Remediation
Information
SolarWinds recommends that customers upgrade to SolarWinds Platform 2024.2 as soon as it becomes available.
Event History
Jun 4, 2024
CVE Published
via MITRE·02:51 PM
Data Sourced
via MITRE·02:51 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 26, 2024
Exploit Published
via ExploitDB·12:00 AM
Known Exploited
via ExploitDB·12:00 AM
Jul 24, 57160
Event
via NVD·01:20 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-28999?
CVE-2024-28999 is classified as a medium-severity vulnerability due to the potential for a race condition in the web console of the SolarWinds Platform.
2
How do I fix CVE-2024-28999?
To fix CVE-2024-28999, users should update to SolarWinds Platform version 2024.2 or later.
3
Which versions of the SolarWinds Platform are affected by CVE-2024-28999?
CVE-2024-28999 affects all versions of the SolarWinds Platform up to but not including 2024.2.
4
What type of vulnerability is CVE-2024-28999?
CVE-2024-28999 is a race condition vulnerability that can impact the functionality of the SolarWinds web console.
5
Is CVE-2024-28999 actively being exploited?
As of the latest information, there are no confirmed reports of active exploitation of CVE-2024-28999.