CVE-2024-0692

The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to abuse SolarWinds’ service, resulting in remote code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:security_event_manager:*:*:*:*:*:*:*:*

History

21 Jan 2025, 19:07

Type Values Removed Values Added
CPE cpe:2.3:a:solarwinds:security_event_manager:*:*:*:*:*:*:*:*
First Time Solarwinds security Event Manager
Solarwinds
References () https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm - () https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm - Release Notes
References () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-0692 - () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-0692 - Vendor Advisory

21 Nov 2024, 08:47

Type Values Removed Values Added
References () https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm - () https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm -
References () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-0692 - () https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-0692 -

01 Mar 2024, 14:04

Type Values Removed Values Added
Summary
  • (es) SolarWinds Security Event Manager era susceptible a una vulnerabilidad de ejecución remota de código. Esta vulnerabilidad permite que un usuario no autenticado abuse del servicio de SolarWinds, lo que resulta en la ejecución remota de código.

01 Mar 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-01 09:15

Updated : 2025-01-21 19:07


NVD link : CVE-2024-0692

Mitre link : CVE-2024-0692

CVE.ORG link : CVE-2024-0692


JSON object : View

Products Affected

solarwinds

  • security_event_manager
CWE
CWE-502

Deserialization of Untrusted Data