PT-2020-13370 · Solarwinds · Solarwinds Orion Platform

Published

2020-09-17

·

Updated

2022-01-21

·

CVE-2020-13169

CVSS v3.1

9.0

Critical

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SolarWinds Orion Platform versions prior to 2020.2.1
Description A Stored XSS issue exists in multiple forms and pages, potentially leading to Information Disclosure and Escalation of Privileges, such as the takeover of an administrator account.
Recommendations For versions prior to 2020.2.1, update to version 2020.2.1 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-13169

Affected Products

Solarwinds Orion Platform