SolarWinds Web Help Desk Hit with Multiple RCE and Auth Bypass Vulnerabilities
ID: 55ab62e2-ff21-562b-a176-6a5f9e13a94a
STIX ID: report--55ab62e2-ff21-562b-a176-6a5f9e13a94a
Feed Name: securityonline.info
Threat Score
Researchers disclosed multiple critical vulnerabilities in SolarWinds Web Help Desk — including unauthenticated deserialization vulnerabilities enabling remote code execution (CVE-2025-40551, CVE-2025-40553), authentication bypasses (CVE-2025-40552, CVE-2025-40554), a security control bypass (CVE-2025-40536), and hardcoded credentials (CVE-2025-40537) — and urge administrators to apply patches immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
