Home/CVEs/CVE-2020-10148/

CVE-2020-10148 - SolarWinds Orion Authentication Bypass Vulnerability

Project:SolarWinds

Product:Orion

Date Added:2021-11-03Due Date:2022-05-03

Vulnerability Name

SolarWinds Orion Authentication Bypass Vulnerability

Description

SolarWinds Orion API contains an authentication bypass vulnerability that could allow a remote attacker to execute API commands.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2020-10148

Related News Articles

Emerging Threats & Vulnerabilities to Prepare for in 2025December 26, 2024