SolarWinds Platform Vulnerable to Reflected Cross-Site Scripting
CVE-2024-29000
What is CVE-2024-29000?
The SolarWinds Platform is susceptible to a reflected cross-site scripting vulnerability found in its web console. This flaw allows attackers to execute arbitrary JavaScript code in the context of a user's browser session. Exploitation of this vulnerability requires user interaction and that the attacker lures a high-privileged user into clicking a malicious link. Given the critical role of the web console in managing network resources, addressing this vulnerability is essential to maintain secure operations within the SolarWinds ecosystem.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SolarWinds Platform 2024.1 and Previous Versions
References
CVSS V3.1
Timeline
Vulnerability published