8.8

CVE-2023-40061

Insecure Job Execution Mechanism Vulnerability

 Insecure
job execution mechanism vulnerability.  This
vulnerability can lead to other attacks as a result.



Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SolarwindsSolarwinds Platform Version < 2023.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.42% 0.334
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
psirt@solarwinds.com 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

https://www.solarwinds.com/trust-center/security-advisories/CVE-2023-40061
Vendor Advisory