← Back

CVE-2020-13169

nvd nist
Published: Sep 17, 2020Modified: Nov 21, 2024

JSON object

Loading...
9.0
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Exploitability: 2.3 / Impact: 6.0
Source: NVD

Description

Stored XSS (Cross-Site Scripting) exists in the SolarWinds Orion Platform before before 2020.2.1 on multiple forms and pages. This vulnerability may lead to the Information Disclosure and Escalation of Privileges (takeover of administrator account).

Affected (1)

1 product
Orion Platform
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2020.2.1

Timeline

No history available yet.