Lucene search

K
cvelistSolarWindsCVELIST:CVE-2024-28999
HistoryJun 04, 2024 - 2:51 p.m.

CVE-2024-28999 SolarWinds Platform Race Condition Vulnerability

2024-06-0414:51:56
CWE-362
SolarWinds
www.cve.org
4
solarwinds
platform
race condition
vulnerability
web console

6.4 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L

8 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

87.9%

The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console.

CNA Affected

[
  {
    "defaultStatus": "affected",
    "product": "SolarWinds Platform",
    "vendor": "SolarWinds ",
    "versions": [
      {
        "status": "affected",
        "version": "2024.1.1 and previous versions "
      }
    ]
  }
]

6.4 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L

8 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

87.9%