SolarWinds Platform Reflected Cross-Site Scripting Vulnerability (CVE-2024-52612)

Summary

SolarWinds Platform is vulnerable to a reflected cross-site scripting vulnerability. This was caused by an insufficient sanitation of input parameters. This vulnerability requires authentication by a high- privileged account to be exploitable.

Affected Products

  • SolarWinds Platform 2024.2.1 and older versions

Fixed Software Release

Acknowledgments

  • Anonymous
Advisory Detail
Severity
High
Advisory ID
First Published
02/11/2025
Fixed Version
CVSS Score
Download PDF
Send an Email