SolarWinds Product Security Update Advisory (CVE-2024-0692)

Overview

 

An update has been made available to fix vulnerabilities in SolarWinds products. users of affected versions are advised to update to the latest version.

 

Affected Products

 

SolarWinds SEM 2023.4 or below

 

Resolved Vulnerabilities

 

Deserialization of untrusted data remote code execution vulnerability in SolarWinds SEM (CVE-2024-0692)

 

Vulnerability Patches

 

vulnerability Patches were made available in the March 1, 2024 update. Please follow the Referenced Sites to update to the latest Vulnerability Patches version.

SolarWinds SEM 2023.4.1 SR Version

 

Referenced Sites

 

[1] CVE-2024-0692 Detail
https://nvd.nist.gov/vuln/detail/CVE-2024-0692
[2] Important Security Update for OpenEdge Authentication Gateway and AdminServer
https://documentation.solarwinds.com/en/success_center/sem/content/release_notes/sem_2023-4-1_release_notes.htm
[3] SolarWinds SEM Deserialization of Untrusted Data Remote Code Execution Vulnerability (CVE-2024-0692)
https://www.solarwinds.com/trust-center/security-advisories/cve-2024-0692