CVE-2023-33224

The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with NETWORK SERVICE privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*

History

02 Aug 2023, 20:52

Type Values Removed Values Added
First Time Solarwinds
Solarwinds solarwinds Platform
CPE cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2
References (MISC) https://www.solarwinds.com/trust-center/security-advisories/cve-2023-33224 - (MISC) https://www.solarwinds.com/trust-center/security-advisories/cve-2023-33224 - Vendor Advisory
References (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-3_release_notes.htm - (MISC) https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-3_release_notes.htm - Release Notes, Vendor Advisory
CWE NVD-CWE-Other

26 Jul 2023, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-26 14:15

Updated : 2023-12-10 15:14


NVD link : CVE-2023-33224

Mitre link : CVE-2023-33224

CVE.ORG link : CVE-2023-33224


JSON object : View

Products Affected

solarwinds

  • solarwinds_platform
CWE
NVD-CWE-Other CWE-696

Incorrect Behavior Order