← Back

CVE-2014-5504

nvd nist
Published: Sep 4, 2014Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

SolarWinds Log and Event Manager before 6.0 uses "static" credentials, which makes it easier for remote attackers to obtain access to the database and execute arbitrary code via unspecified vectors, related to HyperSQL.

Affected (5)

1 product
Log And Event Manager
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Solarwinds
Up to 5.7.0
Version 5.2.0
Version 5.4.0
Version 5.5.0
Version 5.6.0

Related CWEs

Timeline

No history available yet.