Fiche vulnérabilité
CVE-2024-23465 : faille élevée solarwinds access rights manager (CVSS 8.8)
Description
The SolarWinds Access Rights Manager was found to be susceptible to an authentication bypass vulnerability. This vulnerability allows an unauthenticated user to gain domain admin access within the Active Directory environment.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 juil. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- solarwinds access rights manager