solarwinds security advisories
4 threat alerts tracking vulnerabilities and security advisories that affect solarwinds products.
Vulnios monitors solarwinds CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent solarwinds security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2016-3642 — solarwinds — virtualization_manager
The RMI service in SolarWinds Virtualization Manager 6.3.1 and earlier allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collect
criticalCVE-2016-3642Critical Vulnerability: CVE-2016-4350 — solarwinds — storage_resource_monitor
Multiple SQL injection vulnerabilities in the Web Services web server in SolarWinds Storage Resource Monitor (SRM) Profiler (formerly Storage Manager (STM)) before 6.2.3 allow remote attackers to exec
criticalCVE-2016-4350Critical Vulnerability: CVE-2012-2576 — solarwinds — backup_profiler, storage_manager
SQL injection vulnerability in the LoginServlet page in SolarWinds Storage Manager before 5.1.2, SolarWinds Storage Profiler before 5.1.2, and SolarWinds Backup Profiler before 5.1.2 allows remote att
criticalCVE-2012-2576Critical Vulnerability: CVE-2017-7722 — solarwinds — log_\&_event_manager
In SolarWinds Log & Event Manager (LEM) before 6.3.1 Hotfix 4, a menu system is encountered when the SSH service is accessed with "cmc" and "password" (the default username and password). By exploitin
criticalCVE-2017-7722
Track solarwinds exposure across your environment
Vulnios automatically cross-references your asset inventory against new solarwinds CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan