Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Critical SolarWinds Web Help Desk Vulnerability Enables Privilege Escalation

post, september 23, 2025september 24, 2025

SolarWinds has issued an urgent security advisory regarding a critical remote code execution (RCE) vulnerability in its Web Help Desk (WHD) platform, warning customers of an actively exploitable flaw that could allow unauthenticated attackers to gain complete control over affected systems.

The vulnerability, CVE-2025-26399, has been assigned a CVSS severity score of 9.8 (Critical), underscoring the seriousness of the threat. Security researchers have identified the root cause as insecure deserialization within the AjaxProxy component, a recurring weakness in the WHD software stack.

(3) WARNING: Critical SolarWinds Web Help Desk Vulnerability Enables Privilege Escalation | LinkedIn: Critical SolarWinds Web Help Desk Vulnerability Enables Privilege Escalation
vulnerability 2025

Bericht navigatie

Previous post
Next post

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes