CVE Vulnerabilities

CVE-2021-3109

Published: Mar 26, 2021 | Modified: Mar 29, 2021
CVSS 3.x
4.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
CVSS 2.x
4.9 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The custom menu item options page in SolarWinds Orion Platform before 2020.2.5 allows Reverse Tabnabbing in the context of an administrator account.

Affected Software

Name Vendor Start Version End Version
Orion_platform Solarwinds * 2020.2.5 (excluding)

References