{"id":363,"date":"2024-08-22T06:52:05","date_gmt":"2024-08-22T06:52:05","guid":{"rendered":"https:\/\/familiebuckens.nl\/?p=363"},"modified":"2025-02-24T08:07:41","modified_gmt":"2025-02-24T08:07:41","slug":"hardcoded-credential-vulnerability-found-in-solarwinds-web-help-desk","status":"publish","type":"post","link":"https:\/\/familiebuckens.nl\/index.php\/2024\/08\/22\/hardcoded-credential-vulnerability-found-in-solarwinds-web-help-desk\/","title":{"rendered":"Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain unauthorized access to susceptible instances. &#8220;The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing [a] remote unauthenticated user to access internal functionality and modify data,&#8221; the company\u00a0<a href=\"https:\/\/www.solarwinds.com\/trust-center\/security-advisories\/cve-2024-28987\" target=\"_blank\" rel=\"noreferrer noopener\">said<\/a>\u00a0in a new advisory released today. The issue, tracked as\u00a0<strong>CVE-2024-28987<\/strong>, is rated 9.1 on the CVSS scoring system, indicating critical severity. Horizon3.ai security researcher Zach Hanley has been credited with discovering and reporting the flaw.<\/p>\n\n\n<a class=\"wp-block-read-more\" href=\"https:\/\/familiebuckens.nl\/index.php\/2024\/08\/22\/hardcoded-credential-vulnerability-found-in-solarwinds-web-help-desk\/\" target=\"_self\"><a href=\"https:\/\/thehackernews.com\/2024\/08\/hardcoded-credential-vulnerability.html\">Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk (thehackernews.com)<\/a><span class=\"screen-reader-text\">: Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk<\/span><\/a>","protected":false},"excerpt":{"rendered":"<p>SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain unauthorized access to susceptible instances. &#8220;The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing [a] remote unauthenticated user to&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[31,50,45],"class_list":["post-363","post","type-post","status-publish","format-standard","hentry","category-cybersecurity","tag-31","tag-credential-access","tag-initial-access"],"_links":{"self":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/363","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/comments?post=363"}],"version-history":[{"count":1,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/363\/revisions"}],"predecessor-version":[{"id":364,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/363\/revisions\/364"}],"wp:attachment":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/media?parent=363"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/categories?post=363"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/tags?post=363"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}