QID 378955

Date Published: 2023-10-24

QID 378955: SolarWinds Access Rights Manager (ARM) Multiple Vulnerabilities

SolarWinds ARM is a tool that enables organizations to manage and audit user access rights across the IT environments

Affected versions:
SolarWinds ARM prior to version 2023.2.1

QID Detection Logic(Authenticated):
TBD

Vulnerable versions of SolarWinds ARM may allow an attacker to perform Remote Code Execution (RCE) and/or Privilege Escalation

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 8.3 severity.
  • Solution
    For more information about patch and fixes visit SolarWinds ARM 2023.2.1.
    Software Advisories
    Advisory ID Software Component Link
    SolarWinds ARM 2023.2.1 URL Logo documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-1_release_notes.htm