← Back to browse · API

CVE-2025-40553

Severity
CRITICAL
CVSS
9.8
EPSS
0.6039
Risk score
60.34
CISA KEV
No
PoC
No
Published
2026-01-28
Modified
2026-02-27
First seen
2026-08-07
Aliases
EUVD-2025-206482, GHSA-5GQ3-MH83-6M28
Products
SolarWinds:Web Help Desk 12.8.8 HF1 and below
Sources
euvd EUVD-2025-206482

Description

SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, which would allow an attacker to run commands on the host machine. This could be exploited without authentication.

References