logo

Patch Now: Second SolarWinds Critical Bug in Web Help Desk

ID: 5fc85f16-e9d4-590a-997d-a6bb6c12b193

STIX ID: report--5fc85f16-e9d4-590a-997d-a6bb6c12b193

Feed Name: Dark Reading

Threat Score
88/100

Date Published: 2024-08-23

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

SolarWinds released hotfixes for two critical Web Help Desk vulnerabilities — CVE-2024-28986, a Java deserialization RCE (CVSS 9.8) added by CISA to its known exploited vulnerabilities list, and CVE-2024-28987, hardcoded credentials allowing unauthenticated access (CVSS 9.1) — and customers are urged to update immediately to prevent data exposure and unauthorized access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.