60
CVE-2023-40057
—CVSS 3.1
9.0 critical
EPSS
5%p91
Published
()
Modified
Description
The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vulnerability allows an authenticated user to abuse a SolarWinds service resulting in remote code execution.
- Vendors
- solarwinds
- Products
- access rights manager
- Weakness
- CWE-502
- Vector
- CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H