CVE-2024-45717: SolarWinds Platform Cross- Site Scripting Vulnerability
Published Dec 4, 2024
·Updated
The SolarWinds Platform was susceptible to a XSS vulnerability that affects the search and node information section of the user interface. This vulnerability requires authentication and requires user interaction.
Affected Software
2 affected components
SolarWinds SolarWinds Platform<2024.4.1
SolarWinds Platform
Remediation
Information
SolarWinds recommends that customers upgrade to SolarWinds Platform 2024.4.1 as soon as it becomes available.
Event History
Dec 4, 2024
CVE Published
via MITRE·07:05 AM
Data Sourced
via MITRE·07:05 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-45717?
CVE-2024-45717 is classified as a high-severity XSS vulnerability in the SolarWinds Platform.
2
How do I fix CVE-2024-45717?
To fix CVE-2024-45717, update the SolarWinds Platform to version 2024.4.1 or later.
3
What components of the SolarWinds Platform are affected by CVE-2024-45717?
CVE-2024-45717 affects the search and node information section of the user interface of the SolarWinds Platform.
4
Does CVE-2024-45717 require authentication?
Yes, CVE-2024-45717 requires user authentication and interaction to exploit.
5
Can CVE-2024-45717 lead to unauthorized access?
Yes, if exploited, CVE-2024-45717 can potentially lead to unauthorized actions within the SolarWinds Platform.