CVE-2026-28324
Gravedad CVSS v3.1:
CRÍTICA
Tipo:
CWE-345
Verificación insuficiente de autenticidad de los datos
Fecha de publicación:
22/09/2026
Última modificación:
24/09/2026
Descripción
*** Pendiente de traducción *** SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integrity checks. Installations configured in a non-default and non-secure configuration are affected.
Impacto
Puntuación base 3.x
9.80
Gravedad 3.x
CRÍTICA
Referencias a soluciones, herramientas e información
- https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
- https://documentation.solarwinds.com/en/success_center/orionplatform/content/release_notes/hco_2026-2-3_release_notes.htm
- https://documentation.solarwinds.com/en/success_center/wpm/content/orionwpmagaddingalocation.htm
- https://www.solarwinds.com/trust-center/security-advisories/CVE-2026-28324


