SolarWinds Network Performance Monitor 12.3 allows SQL Injection via the /api/ActiveAlertsOnThisEntity/GetActiveAlerts TriggeringObjectEntityNames parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
solarwinds network performance monitor |