SolarWinds Web Help Desk Hardcoded Credentials Vulnerability 

(CVE-2025-40537)

Summary

SolarWinds Web Help Desk was found to be susceptible to a hardcoded credentials vulnerability that, under certain situations, could allow access to administrative functions.

Affected Products

SolarWinds Web Help Desk 12.8.8 HF1 and all previous versions

Fixed Software Release

SolarWinds Web Help Desk 2026.1

Acknowledgments

Jimi Sebree working with Horizon3.ai

Advisory Details

Severity

7.5 High

Advisory ID

First Published

01/28/2026