All vulnerabilities
21 / 21
Sort
9.1
CVE-2024-28987CVE KEV
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability…
2024-01-01KEV
EPSS93.2%
pct 99
9.8
CVE-2025-26399CVE KEV
SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserializ…
2025-01-01KEV
EPSS88.3%
pct 99
9.8
CVE-2024-28986CVE KEV
SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Exec…
2024-01-01KEV
EPSS84.4%
pct 99
9.8
CVE-2025-40551CVE KEV
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulne…
2025-01-01KEV
EPSS84.1%
pct 99
9.8
CVE-2025-40536CVE KEV
SolarWinds Web Help Desk was found to be susceptible to a security control bypass vulnerability…
2025-01-01KEV
EPSS81.6%
pct 99
9.8
CVE-2025-40553CVE
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulne…
2025-01-01Pre-auth
EPSS60.4%
pct 99
9.8
CVE-2025-40554CVE
SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability …
2025-01-01Pre-auth
EPSS57.3%
pct 98
9.8
CVE-2025-40552CVE
SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability …
2025-01-01Pre-auth
EPSS51.7%
pct 98
9.8
CVE-2024-28988CVE
SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Exec…
2024-01-01Pre-auth
EPSS36.6%
pct 98
5.4
CVE-2019-16956CVE
SolarWinds Web Help Desk 12.7.0 allows XSS via the Request Type parameter of a ticket.
2019-01-01
EPSS1.7%
pct 74
5.4
CVE-2019-16961CVE
SolarWinds Web Help Desk 12.7.0 allows XSS via a Schedule Name.
2019-01-01
EPSS1.5%
pct 70
5.4
CVE-2019-16960CVE
SolarWinds Web Help Desk 12.7.0 allows XSS via a CSV template file with a crafted Location Name…
2019-01-01
EPSS1.3%
pct 67
5.4
CVE-2019-16954CVE
SolarWinds Web Help Desk 12.7.0 allows HTML injection via a Comment in a Help Request ticket.
2019-01-01
EPSS1.3%
pct 67
5.3
CVE-2021-32076CVE
Access Restriction Bypass via referrer spoof was discovered in SolarWinds Web Help Desk 12.7.2.…
2021-01-01Pre-auth
EPSS1.2%
pct 63
5.3
CVE-2021-35251CVE
Sensitive information could be displayed when a detailed technical error message is posted. Thi…
2021-01-01Pre-auth
EPSS0.9%
pct 55
7.5
CVE-2021-35243CVE
The HTTP PUT and DELETE methods were enabled in the Web Help Desk web server (12.7.7 and earlie…
2021-01-01Pre-auth
EPSS0.9%
pct 54
7.5
CVE-2025-40537CVE
SolarWinds Web Help Desk was found to be susceptible to a hardcoded credentials vulnerability t…
2025-01-01
EPSS0.5%
pct 40
5.5
CVE-2024-45709CVE
SolarWinds Web Help Desk was susceptible to a local file read vulnerability. This vulnerabilit…
2024-01-01
EPSS0.5%
pct 38
7.5
CVE-2026-28299CVE
SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which wh…
2026-01-01Pre-auth
EPSS0.4%
pct 30
5.5
CVE-2024-28989CVE
SolarWinds Web Help Desk was found to have a hardcoded cryptographic key that could allow the d…
2024-01-01
EPSS0.3%
pct 18
6.5
CVE-2025-26400CVE
SolarWinds Web Help Desk was reported to be affected by an XML External Entity Injection (XXE) …
2025-01-01
EPSS0.2%
pct 14
Select a vulnerability on the left to open the preview.