9.8

CVE-2026-28323

Medienbericht

SolarWinds Web Help Desk SAML Authentication Bypass Vulnerability

SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to be enabled.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SolarwindsWeb Help Desk Version < 2026.2.1
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.61% 0.462
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
psirt@solarwinds.com 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
VulnDex Intel
Media Report
31.07.2026 09:41
https://documentation.solarwinds.com/en/success_center/whd/content/helpdesksecureconfiguration.htm
Product
https://documentation.solarwinds.com/en/success_center/whd/content/release_notes/whd_2026-2-1_release_notes.htm
Vendor Advisory
Release Notes
https://www.solarwinds.com/trust-center/security-advisories/CVE-2026-28323
Vendor Advisory