CVE-2021-35246

Publication date

2022-11-23 16:48:18

Family

SolarWinds

State

PUBLISHED

Description

The application fails to prevent users from connecting to it over unencrypted connections. An attacker able to modify a legitimate users network traffic could bypass the applications use of SSL/TLS encryption and use the application as a platform for attacks against its users.