Beveiligingsadvies

CVE-2019-12864

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-05-04 13:30:46
Laatst bijgewerkt 2024-08-04 23:32:55
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) is vulnerable to Information Leakage, because of improper error handling with stack traces, as demonstrated by discovering a full pathname upon a 500 Internal Server Error via the api2/swis/query?lang=en-us&swAlertOnError=false query parameter.