← Back to browse · API

CVE-2023-23836

Severity
HIGH
CVSS
7.2
EPSS
0.80298
Risk score
56.9
CISA KEV
No
PoC
No
Published
2023-02-15
Modified
2025-03-18
First seen
2026-08-07
Aliases
EUVD-2023-27922, GHSA-6JMV-5F9V-PCQM
Products
SolarWinds:SolarWinds Platform 2022.4.1 and prior versions ≤2022.4.1
Sources
euvd EUVD-2023-27922

Description

SolarWinds Platform version 2022.4.1 was found to be susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to the SolarWinds Web Console to execute arbitrary commands.

References