CVE-2018-13442
16.07.2019, 18:15
SolarWinds Network Performance Monitor 12.3 allows SQL Injection via the /api/ActiveAlertsOnThisEntity/GetActiveAlerts TriggeringObjectEntityNames parameter.
Vendor | Product | Version |
---|---|---|
solarwinds | network_performance_monitor | 𝑥 ≤ 12.3 |
𝑥
= Vulnerable software versions