CVE-2024-52611
Last modified
CVE-2024-52611 is a low-severity vulnerability rated 3.5/10 on the CVSS scale. The SolarWinds Platform is vulnerable to an information disclosure vulnerability through an error message. While the data does not provide anything sensitive, the information could assist an attacker in other malicious actions.. EPSS estimates a 0.33% chance of exploitation in the next 30 days.
Description
The SolarWinds Platform is vulnerable to an information disclosure vulnerability through an error message. While the data does not provide anything sensitive, the information could assist an attacker in other malicious actions.
Metrics
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Solarwinds | Solarwinds Platform | < 2025.1 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-52611?
How severe is CVE-2024-52611?
How do I fix CVE-2024-52611?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-5260The Sina Extension for Elementor (Slider, Gallery, Form, Mod…5.4
- CVE-2024-52600Statmatic is a Laravel and Git powered content management sy…5.3
- CVE-2024-52601iTop is an web based IT Service Management tool. Prior to ve…6.5
- CVE-2024-52602Matrix Media Repo (MMR) is a highly configurable multi-homes…5.3
- CVE-2024-52606SolarWinds Platform is affected by server-side request forge…9.8
- CVE-2024-5261Improper Certificate Validation vulnerability in LibreOffice…9.8
- CVE-2024-52612SolarWinds Platform is vulnerable to a reflected cross-site …4.8
- CVE-2024-52613A heap-based buffer under-read in tsMuxer version nightly-20…5.5
- CVE-2024-52614Use of hard-coded cryptographic key issue exists in "Kura Su…4
- CVE-2024-52615A flaw was found in Avahi-daemon, which relies on fixed sour…5.3
- CVE-2024-52616A flaw was found in the Avahi-daemon, where it initializes D…5.3
- CVE-2024-5262Files or Directories Accessible to External Parties vulnerab…9.8
Are you affected by CVE-2024-52611?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
