CVE-2024-45709: SolarWinds Web Help Desk Local File Read Vulnerability
SolarWinds Web Help Desk was susceptible to a local file read vulnerability. This vulnerability requires the software be installed on Linux and configured to use non-default development/test mode making exposure to the vulnerability very limited.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45709?
CVE-2024-45709 has a low severity rating due to its limited exposure requirements.
How do I fix CVE-2024-45709?
To fix CVE-2024-45709, ensure that SolarWinds Web Help Desk is not running in development/test mode.
Which versions of SolarWinds Web Help Desk are affected by CVE-2024-45709?
CVE-2024-45709 affects all versions of SolarWinds Web Help Desk that are installed on Linux and configured in test mode.
Is CVE-2024-45709 exploitable remotely?
CVE-2024-45709 is not remotely exploitable as it requires local access to the affected system.
What does the local file read vulnerability in CVE-2024-45709 entail?
The local file read vulnerability in CVE-2024-45709 allows unauthorized users to read sensitive files from the system if the configuration is in a non-secure mode.