Home/Product/solarwinds access rights manager
Product

solarwinds access rights manager

32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-28991
< 2024.3.1
SolarWinds Access Rights Manager (ARM) was found to be susceptible to a remote code execution vulnerability. If exploited, this vu
9.0CRITICAL
CVE-2024-28990
< 2024.3.1
SolarWinds Access Rights Manager (ARM) was found to contain a hard-coded credential authentication bypass vulnerability. If exploi
6.3MEDIUM
CVE-2024-28993
< 2024.3
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulne
7.6HIGH
CVE-2024-28992
<= 2023.2.4
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulne
7.6HIGH
CVE-2024-28074
<= 2023.2.4
It was discovered that a previous vulnerability was not completely fixed with SolarWinds Access Rights Manager. While some control
9.6CRITICAL
CVE-2024-23475
<= 2023.2.4
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulne
9.6CRITICAL
CVE-2024-23474
<= 2023.2.4
The SolarWinds Access Rights Manager was found to be susceptible to an Arbitrary File Deletion and Information Disclosure vulnerab
7.6HIGH
CVE-2024-23472
<= 2023.2.4
SolarWinds Access Rights Manager (ARM) is susceptible to Directory Traversal vulnerability. This vulnerability allows an authentic
9.6CRITICAL
CVE-2024-23471
<= 2023.2.4
The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vuln
9.6CRITICAL
CVE-2024-23470
<= 2023.2.4
The SolarWinds Access Rights Manager was found to be susceptible to a pre-authentication remote code execution vulnerability. If e
9.6CRITICAL
CVE-2024-23469
<= 2023.2.4
SolarWinds Access Rights Manager (ARM) is susceptible to a Remote Code Execution vulnerability. If exploited, this vulnerability a
9.6CRITICAL
CVE-2024-23468
<= 2023.2.4
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulne
7.6HIGH
CVE-2024-23467
<= 2023.2.4
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulne
9.6CRITICAL
CVE-2024-23466
<= 2023.2.4
SolarWinds Access Rights Manager (ARM) is susceptible to a Directory Traversal Remote Code Execution vulnerability. If exploited,
9.6CRITICAL
CVE-2024-23465
<= 2023.2.4
The SolarWinds Access Rights Manager was found to be susceptible to an authentication bypass vulnerability. This vulnerability all
8.3HIGH
CVE-2024-28075
< 2023.2.4
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenti
9.0CRITICAL
CVE-2024-23473
< 2023.2.4
The SolarWinds Access Rights Manager was found to contain a hard-coded credential authentication bypass vulnerability. If exploite
8.6HIGH
CVE-2024-23479
< 2023.2.3
SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerability. I
9.6CRITICAL
CVE-2024-23478
< 2023.2.3
SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vu
8.0HIGH
CVE-2024-23477
< 2023.2.3
The SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerabilit
7.9HIGH
CVE-2024-23476
< 2023.2.3
The SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerabilit
9.6CRITICAL
CVE-2023-40057
< 2023.2.2
The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited, this vuln
9.0CRITICAL
CVE-2023-40058
<= 2023.2.1
Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Right
6.5MEDIUM
CVE-2023-35187
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability allows
8.8HIGH
CVE-2023-35186
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenti
8.0HIGH
CVE-2023-35185
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability using SYSTEM privileges.
6.8MEDIUM
CVE-2023-35184
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthen
8.8HIGH
CVE-2023-35183
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows authenticate
7.8HIGH
CVE-2023-35182
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability can be abused by u
8.8HIGH
CVE-2023-35181
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows users to abu
7.8HIGH
CVE-2023-35180
<= 2023.2.0.73
The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows authenticat
8.0HIGH
CVE-2021-35227
<= 2020.2.6
The HTTP interface was enabled for RabbitMQ Plugin in ARM 2020.2.6 and the ability to configure HTTPS was not available.
4.7MEDIUM
threatengine.sh