solarwinds
19 known vulnerabilities affecting solarwinds products.
Products
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-28318 | Act now | 40.0% | 7.5 | ● | SolarWinds Serv-U is susceptible to specially crafted POST requests that crash t… |
| CVE-2026-28316 | Medium | 2.1% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28304 | Medium | 0.8% | 9.1 | SolarWinds Serv-U is affected by a remote code execution vulnerability that, whe… | |
| CVE-2026-28305 | Medium | 0.8% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28308 | Medium | 0.8% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28302 | Medium | 0.7% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28323 | Medium | 0.7% | 9.8 | SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass… | |
| CVE-2026-28314 | Medium | 0.6% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference vulnerabili… | |
| CVE-2026-28312 | Medium | 0.6% | 9.1 | SolarWinds Serv-U is affected by a privilege escalation vulnerability. This woul… | |
| CVE-2026-28321 | Medium | 0.6% | 9.1 | SolarWinds Serv-U is affected by a broken access control vulnerability that coul… | |
| CVE-2026-28299 | Medium | 0.5% | 8.2 | SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerab… | |
| CVE-2026-28306 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by a privilege escalation vulnerability that allow… | |
| CVE-2026-28307 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by a privilege escalation vulnerability that allow… | |
| CVE-2026-28309 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by a broken access control vulnerability that allo… | |
| CVE-2026-28310 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by a privilege escalation vulnerability that allow… | |
| CVE-2026-28313 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28317 | Medium | 0.5% | 9.1 | SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln… | |
| CVE-2026-28315 | Low | 0.5% | 6.2 | SolarWinds Serv-U was found to be affected by a stored cross-site scripting vuln… | |
| CVE-2018-25252 | Low | 0.3% | 6.2 | FTP Voyager 16.2.0 contains a denial of service vulnerability that allows local … |