mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-06-20 09:50:49 +00:00
add CVE-2020-10148
This commit is contained in:
parent
ee99688861
commit
6116435ec4
BIN
SolarWinds/CVE-2020-10148/CVE-2020-10148.gif
Normal file
BIN
SolarWinds/CVE-2020-10148/CVE-2020-10148.gif
Normal file
Binary file not shown.
After Width: | Height: | Size: 488 KiB |
9
SolarWinds/CVE-2020-10148/README.md
Normal file
9
SolarWinds/CVE-2020-10148/README.md
Normal file
@ -0,0 +1,9 @@
|
|||||||
|
# CVE-2020-10148 SolarWinds Orion Local File Disclosure
|
||||||
|
|
||||||
|
The SolarWinds Orion API is vulnerable to an authentication bypass that could allow a remote attacker to execute API commands. This vulnerability could allow a remote attacker to bypass authentication and execute API commands which may result in a compromise of the SolarWinds instance. SolarWinds Orion Platform versions 2019.4 HF 5, 2020.2 with no hotfix installed, and 2020.2 HF 1 are affected.
|
||||||
|
|
||||||
|
**[FOFA](https://fofa.so/result?q=app%3D%22Solarwinds-Traffic-Management%22&qbase64=YXBwPSJTb2xhcndpbmRzLVRyYWZmaWMtTWFuYWdlbWVudCI%3D&file=&file=) query rule**: app="Solarwinds-Traffic-Management"
|
||||||
|
|
||||||
|
# Demo
|
||||||
|
|
||||||
|

|
Loading…
x
Reference in New Issue
Block a user