How to find SolarWinds Web Help Desk services on your network
ID: 204e676b-3186-52a9-9bba-3fae4b416ae3
STIX ID: report--204e676b-3186-52a9-9bba-3fae4b416ae3
Feed Name: runZero Blog
Threat Score
This advisory summarizes multiple critical vulnerabilities in SolarWinds Web Help Desk—including unauthenticated RCE and authentication bypass flaws (CVE-2025-40551/40552/40553/40554, CVE-2025-26399, CVE-2024-28987)—identifies affected WHD versions, describes impact (potential full system compromise), notes that at least one vulnerability is actively exploited, and recommends upgrading to the specified hotfix versions while providing runZero queries to locate vulnerable assets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
