Multiple cross-site scripting (XSS) vulnerabilities in SolarWinds Orion Network Performance Monitor (NPM) prior to 10.3.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) syslocation, (2) syscontact, or (3) sysName field of an snmpd.conf file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
solarwinds orion network performance monitor 7.8.5 |
||
solarwinds orion network performance monitor 8.5 |
||
solarwinds orion network performance monitor 8.5.1 |
||
solarwinds orion network performance monitor 9.1 |
||
solarwinds orion network performance monitor 10.1 |
||
solarwinds orion network performance monitor 10.0 |
||
solarwinds orion network performance monitor |
||
solarwinds orion network performance monitor 9.0 |
||
solarwinds orion network performance monitor 9.5.1 |