CVE-2021-35226

An entity in Network Configuration Manager product is misconfigured and exposing password field to Solarwinds Information Service (SWIS). Exposed credentials are encrypted and require authenticated access with an NCM role.
Configurations

Configuration 1 (hide)

cpe:2.3:a:solarwinds:network_configuration_manager:*:*:*:*:*:*:*:*

History

11 Oct 2022, 18:59

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-10 23:15

Updated : 2024-02-04 22:51


NVD link : CVE-2021-35226

Mitre link : CVE-2021-35226

CVE.ORG link : CVE-2021-35226


JSON object : View

Products Affected

solarwinds

  • network_configuration_manager
CWE
CWE-326

Inadequate Encryption Strength