Vulnerabilities (CVE)

Filtered by vendor Solarwinds Subscribe
Filtered by product Log And Event Manager
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-5198 1 Solarwinds 1 Log And Event Manager 2019-10-03 7.2 HIGH 8.8 HIGH
SolarWinds LEM (aka SIEM) before 6.3.1 has an incorrect sudo configuration, which allows local users to obtain root access by editing /usr/local/contego/scripts/hostname.sh.
CVE-2017-5199 1 Solarwinds 1 Log And Event Manager 2019-10-03 6.5 MEDIUM 8.8 HIGH
The editbanner feature in SolarWinds LEM (aka SIEM) through 6.3.1 allows remote authenticated users to execute arbitrary code by editing /usr/local/contego/scripts/mgrconfig.pl.