Security Advisory

CVE-2022-36966

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-20 20:05:35
Last updated 2025-05-07 20:49:50
Assigner SolarWinds
State PUBLISHED

Description

Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter causing insecure direct object reference (IDOR) vulnerability in SolarWinds Platform 2022.3 and previous.