Dive Brief:
Dive Insight:
SolarWinds Web Help Desk is a widely used application for IT management and help desk ticketing. The application is used by a variety of small to mid-sized businesses and companies with remote workers.
SolarWinds cautioned that while the issue was reported as an unauthenticated vulnerability, it was unable to reproduce the issue without prior authentication after conducting a thorough amount of testing.
The company said all users of the application should apply the hotfix out of an abundance of caution.
The company warned the patch should not be applied if security assertion markup language for single-sign on is utilized, as a new patch will be issued to address that scenario.
The issue impacts SolarWinds Web Help Desk versions 12.8.3 and earlier.
Source link