Warning: Critical untrusted deserialization vulnerability in SolarWinds Help Desk, actively exploited, Patch Immediately!
ID: 29eba72e-95f8-56e1-99e3-80cae7f1af3c
STIX ID: report--29eba72e-95f8-56e1-99e3-80cae7f1af3c
Feed Name: CCB Advisories Feed
Threat Score
SolarWinds Web Help Desk (<= 12.8.8 HF1) is affected by CVE-2025-40551, an untrusted deserialization vulnerability (CWE-502) with a CVSS 9.8 rating that can allow attackers to execute arbitrary code, fully compromise exposed instances, and pivot within corporate networks; the advisory recommends immediate patching and increased monitoring/detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
