SolarWinds Web Help Desk Hardcoded Cryptographic Key Vulnerability

Vulnerability

A vulnerability exists in SolarWinds Web Help Desk due to a hardcoded cryptographic key, which could lead to the unauthorized disclosure of sensitive information from the application. This issue affects Web Help Desk versions prior to 12.8.5.

Impact

Exploitation of this vulnerability could result in the unauthorized disclosure of sensitive information from the Web Help Desk application.

Remediation

Users can upgrade to SolarWinds Web Help Desk version 12.8.5, which addresses this vulnerability by removing the hardcoded key and enhancing database communication security. Instructions for upgrading are available in the Web Help Desk Installation and Upgrade Guide.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.