Aller au contenu

Fiche vulnérabilité

CVE-2021-35254 : faille élevée SolarWinds WebHelpDesk (CVSS 8.2)

Description

SolarWinds received a report of a vulnerability related to an input that was not sanitized in WebHelpDesk. SolarWinds has removed this input field to prevent the misuse of this input in the future.

En bref

Sévérité
Élevée (CVSS 8.2)
Vecteur CVSS
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
Exploitation active
Non signalée par la CISA
Publication
25 mars 2022
Dernière mise à jour
4 août 2024

Produits concernés

  • SolarWinds WebHelpDesk

Correctif et mesures

SolarWinds advises to upgrade to the latest version of Web Help Desk (WHD 12.7.8 HF 1).

Références

Rechercher une autre vulnérabilité dans la base CVE