SolarWinds Web Help Desk Flaw Allows Remote Code Execution
ID: 79dc977a-1c38-5ea1-97e8-046f5e83325c
STIX ID: report--79dc977a-1c38-5ea1-97e8-046f5e83325c
Feed Name: Cyber Press
**Executive Summary:** The report describes critical vulnerabilities in SolarWinds Web Help Desk (notably CVE-2024-28987), including a Java deserialization RCE and a hardcoded credential that could permit unauthorized access; SolarWinds released Hotfix 12.8.3 HF2 (and references HF1) which adds whd-security.jar, updates whd-core.jar and whd-web.jar, and requires modifying tomcat_server_template.xml to add a SecurityValve as mitigation. The advisory notes affected install paths, provides installation and uninstallation steps, and recommends applying the hotfix despite limited reproduction of the RCE without authentication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
