CVE-2023-40055
- EPSS 3.55%
- Veröffentlicht 09.11.2023 15:15:08
- Zuletzt bearbeitet 21.11.2024 08:18:37
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges. We found this issue was not resolved in CVE-202...
CVE-2023-40054
- EPSS 1.39%
- Veröffentlicht 09.11.2023 15:15:07
- Zuletzt bearbeitet 21.11.2024 08:18:36
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges. We found this issue was not resolved in CVE-202...
CVE-2023-33226
- EPSS 3.55%
- Veröffentlicht 01.11.2023 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:05:10
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows a low-level user to perform the actions with SYSTEM privileges.
CVE-2023-33227
- EPSS 3.55%
- Veröffentlicht 01.11.2023 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:05:11
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.
CVE-2023-33228
- EPSS 0.04%
- Veröffentlicht 01.11.2023 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:05:11
The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to obtain sensitive information.
CVE-2021-35226
- EPSS 0.31%
- Veröffentlicht 10.10.2022 23:15:14
- Zuletzt bearbeitet 24.02.2026 18:19:24
An entity in Network Configuration Manager product is misconfigured and exposing password field to Solarwinds Information Service (SWIS). Exposed credentials are encrypted and require authenticated access with an NCM role.
CVE-2014-3459
- EPSS 4.55%
- Veröffentlicht 07.08.2014 11:13:34
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in SolarWinds Network Configuration Manager (NCM) before 7.3 allows remote attackers to execute arbitrary code via the PEstrarg1 property.