logo

SolarWinds Web Help Desk Hit with Multiple RCE and Auth Bypass Vulnerabilities

ID: 55ab62e2-ff21-562b-a176-6a5f9e13a94a

STIX ID: report--55ab62e2-ff21-562b-a176-6a5f9e13a94a

Feed Name: securityonline.info

Threat Score
80/100

Date Published: 2026-01-28

Date Updated: 2026-04-23

Author: Ddos

...
...

Researchers disclosed multiple critical vulnerabilities in SolarWinds Web Help Desk — including unauthenticated deserialization vulnerabilities enabling remote code execution (CVE-2025-40551, CVE-2025-40553), authentication bypasses (CVE-2025-40552, CVE-2025-40554), a security control bypass (CVE-2025-40536), and hardcoded credentials (CVE-2025-40537) — and urge administrators to apply patches immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.