SolarWinds Platform Server-Side Request Forgery Vulnerability (CVE-2024-52606)

Summary

SolarWinds Platform is affected by server-side request forgery vulnerability. Proper input sanitation was not applied allowing for the possibility of a malicious web request.

Affected Products

  • SolarWinds Platform 2024.4.1 and previous versions

Fixed Software Release

Acknowledgments

  • Anonymous working with Trend Micro Zero Day Initiative
Advisory Details
Severity
Low
Advisory ID
First Published
02/11/2025
Fixed Version
CVSS Score
Download PDF
Send an Email