SolarWinds ARM Vulnerable to Remote Code Execution
CVE-2024-23478
What is CVE-2024-23478?
A remote code execution vulnerability exists in SolarWinds Access Rights Manager (ARM), allowing an authenticated user to exploit this flaw and execute arbitrary code on the system. The vulnerability arises from improper handling of requests within the SolarWinds service. Exploitation of this vulnerability can lead to unauthorized access, data breaches, and potential compromise of the system. Users are urged to apply available security updates and best practices to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Access Rights Manager previous versions <= 2023.2.2
References
EPSS Score
61% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved