← Back to browse · API

CVE-2022-36958

Severity
HIGH
CVSS
8.8
EPSS
0.82746
Risk score
64.16
CISA KEV
No
PoC
No
Published
2022-10-20
Modified
2025-05-08
First seen
2026-08-07
Aliases
EUVD-2022-39615, GHSA-3P56-MXJF-MFGP
Products
SolarWinds:Orion Platform unspecified ≤2020.2.6 HF5 and prior versions, SolarWinds:SolarWinds Platform unspecified ≤2022.3 and prior versions
Sources
euvd EUVD-2022-39615

Description

SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with valid access to SolarWinds Web Console to execute arbitrary commands.

References