CVE-2022-47508

Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for data via IP address this prevented us from utilizing Kerberos.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:server_and_application_monitor:2022.4:*:*:*:*:*:*:*

History

24 Feb 2023, 18:46

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.solarwinds.com/trust-center/security-advisories/CVE-2022-47508 - (MISC) https://www.solarwinds.com/trust-center/security-advisories/CVE-2022-47508 - Vendor Advisory
References (MISC) https://documentation.solarwinds.com/en/success_center/sam/content/release_notes/sam_2023-1_release_notes.htm - (MISC) https://documentation.solarwinds.com/en/success_center/sam/content/release_notes/sam_2023-1_release_notes.htm - Release Notes
CPE cpe:2.3:a:solarwinds:server_and_application_monitor:2022.4:*:*:*:*:*:*:*
First Time Solarwinds server And Application Monitor
Solarwinds

15 Feb 2023, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-15 19:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-47508

Mitre link : CVE-2022-47508

CVE.ORG link : CVE-2022-47508


JSON object : View

Products Affected

solarwinds

  • server_and_application_monitor
CWE
NVD-CWE-noinfo CWE-287

Improper Authentication