HomeSecurityCISA: Adds SolarWinds WHD vulnerability to KEV List

CISA: Adds SolarWinds WHD vulnerability to KEV List

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in SolarWinds Web Help Desk (WHD) software to the List of Known Exploitable Vulnerabilities (KEV) .

CISA SolarWinds Web Help Desk vulnerability

The vulnerability is tracked as CVE-2024-28987 (CVSS score: 9.1) and is related to hard-coded credentials that could be used by attackers to gain unauthorized access and make modifications.

See also: Vulnerabilities in Splunk Enterprise allow hackers to execute remote code

Specifically, CISA said: “SolarWinds Web Help Desk contains a hardcoded credential vulnerability, which could allow a remote, unauthorized user to access internal functions and modify data.”

SolarWinds itself disclosed details of the vulnerability in late August 2024, with cybersecurity firm Horizon3.ai publishing additional technical details a month later.

The vulnerability "allows unauthorized attackers to remotely read and modify all details of help desk tickets, which often contain sensitive information such as passwords from restore requests and shared service account credentials," said security researcher Zach Hanley.

See also: Netgear WiFi Extender: Vulnerabilities allow hackers to insert malicious code

Although CISA added the SolarWinds vulnerability to the KEV list, it did not provide details on how the vulnerability and by whom it has been used.

Federal Civilian Executive Branch (FCEB) agencies must apply the latest fixes (version 12.8.3 Hotfix 2 or later) by November 5, 2024.

While CISA's KEV list is primarily designed to alert federal agencies, all organizations should prioritize patching this vulnerability.

The KEV catalog is very useful for organizations around the world who want to learn about new threats and are interested in better vulnerability management and prioritization.

See also: Jetpack plugin fixes critical vulnerability

CISA: Adds SolarWinds WHD vulnerability to KEV List
CISA: Adds SolarWinds Web Help Desk vulnerability to KEV List

Overall, CISA helps a lot in protecting and addressing cybersecurity threats. This organization works with various sectors, such as private businesses, state governments, and local authorities, to improve the security of digital systems.

It provides information and tools to help organizations protect their networks from cyberattacks and respond to any attacks that may occur. It also informs the public about any vulnerabilities in widely used systems and applications.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

Overall, CISA's role is vital to protecting the digital infrastructure of the US and other regions.

Source: thehackernews.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr/politiki-syntaxis/
Member of the SecNews Editorial Team. Covers software vulnerabilities, data breaches, cyberattacks and technology developments. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS