First published: Mon Nov 06 2023(Updated: )
This vulnerability allows remote attackers to execute arbitrary code on affected installations of SolarWinds Network Configuration Manager. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2023-33226.
Affected Software | Affected Version | How to fix |
---|---|---|
Solarwinds Orion Network Configuration Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-21223 is rated at 8.8 on the CVSS scale.
To fix ZDI-CAN-21223, you should apply the latest security patch provided by SolarWinds for the Network Configuration Manager.
ZDI-CAN-21223 can be exploited by remote attackers to execute arbitrary code on affected installations.
Yes, authentication is required to successfully exploit ZDI-CAN-21223.
ZDI-CAN-21223 affects installations of SolarWinds Network Configuration Manager.