QID 378098

Date Published: 2023-03-22

QID 378098: Solarwinds Platform Multiple Vulnerabilities

SolarWinds Platform is an IT performance monitoring platform.

Affected Products:
SolarWinds Platform 2022.4.1 and earlier

QID Detection Logic (Authenticated):
1. The QID extracts Solarwinds Orion Platform version from registry key "HKLM\SOFTWARE\SolarWinds\Orion\Core or HKLM\SOFTWARE\Wow6432Node\SolarWinds\Orion\Core", value "InstallPath", then compare file version of "SolarWinds.Orion.Core.Common.dll; with patched versions
2. The QID extracts Solarwinds Orion Platform version from registry key "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall or HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall", value "InstallLocation", then compare file version of "SolarWinds.Orion.Core.Common.dll; with patched versions

An attacker could exploit these vulnerabilities to compromise confidentiality, integrity and availability.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution

    Customers are advised to refer to SolarWinds Platform

    Software Advisories
    Advisory ID Software Component Link
    SolarWinds URL Logo documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/solarwinds_platform_2023-1_release_notes.htm