CVE-2023-23839

The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCommunityStrings SWIS schema object and obtain sensitive information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*

History

03 Aug 2023, 21:15

Type Values Removed Values Added
Summary The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCommunityStrings SWIS schema object and obtain sensitive information. The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCommunityStrings SWIS schema object and obtain sensitive information.

04 May 2023, 21:19

Type Values Removed Values Added
References (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-2_release_notes.htm - (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-2_release_notes.htm - Release Notes
References (MISC) https://www.solarwinds.com/trust-center/security-advisories/CVE-2023-23839 - (MISC) https://www.solarwinds.com/trust-center/security-advisories/CVE-2023-23839 - Vendor Advisory
First Time Solarwinds
Solarwinds solarwinds Platform
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*

25 Apr 2023, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-25 21:15

Updated : 2023-12-10 15:01


NVD link : CVE-2023-23839

Mitre link : CVE-2023-23839

CVE.ORG link : CVE-2023-23839


JSON object : View

Products Affected

solarwinds

  • solarwinds_platform
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor