Remote Code Execution in SolarWinds LEM by Authenticated Users
CVE-2017-5199
8.8HIGH
What is CVE-2017-5199?
The editbanner feature in SolarWinds LEM allows remote authenticated users to execute arbitrary code through a vulnerability in the handling of scripts. By manipulating the /usr/local/contego/scripts/mgrconfig.pl file, an attacker can gain unauthorized control over the affected system, potentially leading to severe security breaches. This vulnerability underscores the importance of securing user access and correctly validating inputs in software management systems.