RULE(RULE ID:332921)

Rule General Information
Release Date: 2021-03-26
Rule Name: SolarWinds Storage Manager AuthenticationFilter Authentication Bypass Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: An authentication bypass vulnerability exists in SolarWinds Storage Manager. The vulnerability is due to a flaw within the AuthenticationFilter class. A remote unauthenticated attacker could exploit this vulnerability by bypassing the authentication filter and uploading malicious scripts to the target. Successful exploitation could result in code execution under the context of the system.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.