VendorsSolarwindsorion_web_performance_monitor2019.4.1
Vulnerabilities

Solarwinds Orion Web Performance Monitor 2019.4.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2020-14005
Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows remote attackers to execute arbitrary code via a defined event.
Published 2020-06-24 · Modified
9.0EPSS 0.143
CVE-2020-14006
Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a Responsible Team.
Published 2020-06-24 · Modified
5.4EPSS 0.011
CVE-2020-14007
Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a name of an alert definition.
Published 2020-06-24 · Modified
5.4EPSS 0.011