logo

SolarWinds: Critical RCE Bug Requires Urgent Patch

ID: f7026d5a-e97f-5045-9c34-66ebeba2851a

STIX ID: report--f7026d5a-e97f-5045-9c34-66ebeba2851a

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2024-08-15

Date Updated: 2026-05-05

Author: Dark Reading Staff

...
...

SolarWinds has announced a critical Java deserialization RCE in Web Help Desk (CVE-2024-28986, CVSS 9.8) and urges customers to upgrade to version 12.8.3 and install the provided hotfix; researchers reported unauthenticated RCE capability while the vendor could not reproduce it without authentication.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.