SolarWinds Platform Server-Side Request Forgery Vulnerability
(CVE-2024-52606)
Summary
SolarWinds Platform is affected by server-side request forgery vulnerability. Proper input sanitation was not applied allowing for the possibility of a malicious web request.
Affected Products
- SolarWinds Platform 2024.4.1 and previous versions
Fixed Software Release
Acknowledgments
- Anonymous working with Trend Micro Zero Day Initiative
Advisory Details
Severity
3.5 Low
Advisory ID
First Published
02/11/2025