SolarWinds Platform Server-Side Request Forgery Vulnerability 

(CVE-2024-52606)

Summary

SolarWinds Platform is affected by server-side request forgery vulnerability. Proper input sanitation was not applied allowing for the possibility of a malicious web request.

Affected Products

  • SolarWinds Platform 2024.4.1 and previous versions

Fixed Software Release

Acknowledgments

  • Anonymous working with Trend Micro Zero Day Initiative

Advisory Details

Severity

3.5 Low

Advisory ID

First Published

02/11/2025