PT-2026-5074 · Solarwinds · Solarwinds Web Help Desk

CVE-2025-40552

·

Publicado

2026-01-28

·

Atualizado

2026-03-02

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SolarWinds Web Help Desk versions prior to 2026.1
Description SolarWinds Web Help Desk is affected by an authentication bypass issue. Successful exploitation allows a malicious actor to execute actions and methods that should require authentication, potentially granting unauthorized access to protected information. The issue stems from flaws in the authentication procedure and improper access controls.
Recommendations Upgrade to version 2026.1 or later.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-00932
CVE-2025-40552

Produtos afetados

Solarwinds Web Help Desk