SolarWinds Web Help Desk
cpe:2.3:a:solarwinds:web_help_desk:*:*:*:*:*:*:*, +1 more
This vulnerability is being actively exploited in the wild.
A remote code execution vulnerability has been identified in SolarWinds Web Help Desk. This issue arises from an untrusted data deserialization vulnerability that could allow an attacker to execute commands on the host machine. The vulnerability can be exploited without authentication.
Exploitation of this vulnerability allows for remote code execution on the host machine.
Users can upgrade to SolarWinds Web Help Desk version 2026.1 or later, where this vulnerability has been addressed. For instructions on upgrading, see the WHD Installation and Upgrade Guide.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.