

Rewterz Threat Advisory – Multiple Dell Rugged Control Center Vulnerabilities
December 6, 2023
Rewterz Threat Alert – A New PikaBot Malware – Active IOCs
December 7, 2023
Rewterz Threat Advisory – Multiple Dell Rugged Control Center Vulnerabilities
December 6, 2023
Rewterz Threat Alert – A New PikaBot Malware – Active IOCs
December 7, 2023Severity
High
Analysis Summary
CVE-2023-40056
SolarWinds Orion Platform could allow a remote authenticated attacker to execute arbitrary code on the system, caused by a flaw in the VimChartInfo class. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code in the context of SYSTEM.
Impact
- Code Execution
Indicators Of Compromise
CVE
- CVE-2023-40056
Affected Vendors
SolarWinds
Affected Products
- SolarWinds Orion Platform 2023.4.1
Remediation
Upgrade to the latest version of Orion Platform, available from the SolarWinds Website.