SolarWinds Log and Event Manager prior to 6.0 uses "static" credentials, which makes it easier for remote malicious users to obtain access to the database and execute arbitrary code via unspecified vectors, related to HyperSQL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
solarwinds log and event manager |
||
solarwinds log and event manager 5.6.0 |
||
solarwinds log and event manager 5.5.0 |
||
solarwinds log and event manager 5.2.0 |
||
solarwinds log and event manager 5.4.0 |