Network Management
Privilege Escalation Vulnerability in the Orion Platform
This article describes how to resolve an issue with the vulnerability CVE-2021-35213, which was discovered in Orion Platform 2020.2.5 and earlier.
First published date
Last published date
Overview
A vulnerability was discovered in Orion Platform 2020.2.5 and earlier that could potentially allow a guest user to give Administrator privileges to his or her account. The CVE ID of this vulnerability is CVE-2021-35213.
Product section
Resolution
To resolve this issue, SolarWinds recommends upgrading to Orion Platform 2020.2.6.
If you are unable to upgrade, patches that resolve the issue are available for the following versions:
- 2019.4.2
- 2019.2
You can download these patches using the following links: