SolarWinds Platform Incorrect Input Neutralization Vulnerability
Vulnerability Description
The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds Platform account to append URL parameters to inject passive HTML.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-33229
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- SolarWinds would like to thank Juampa Rodriguez (@UnD3sc0n0c1d0) for reporting on the issue in a responsible manner.
References
More from SolarWinds
View All →Affected Vendor
SolarWinds
View all reports →