5.4
CVSSv3

CVE-2022-36966

Published: 20/10/2022 Updated: 03/08/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.5 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter causing insecure direct object reference (IDOR) vulnerability in SolarWinds Platform 2022.3 and previous.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

solarwinds orion platform 2020.2.6

solarwinds orion platform

solarwinds orion platform 2022.2

solarwinds orion platform 2022.3