Vulnerabilities (CVE)

Filtered by vendor Solarwinds Subscribe
Filtered by product Access Rights Manager
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-35185 1 Solarwinds 1 Access Rights Manager 2024-02-05 N/A 6.8 MEDIUM
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability using SYSTEM privileges.
CVE-2021-35227 1 Solarwinds 1 Access Rights Manager 2024-02-04 4.6 MEDIUM 7.8 HIGH
The HTTP interface was enabled for RabbitMQ Plugin in ARM 2020.2.6 and the ability to configure HTTPS was not available.
CVE-2023-40058 1 Solarwinds 1 Access Rights Manager 2024-02-02 N/A 6.5 MEDIUM
Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Rights Manager (ARM) if the threat actor is in the same environment.