Description
SolarWinds Web Help Desk has a Java object deserialization vulnerability (based on the detected version). An unauthenticated attacker could send a specially crafted serialized request to execute arbitrary code on the system.
Remediation
Upgrade to the latest version of SolarWinds Web Help Desk.
References
Related Vulnerabilities
MySQL CVE-2014-0412 Vulnerability (CVE-2014-0412)
MySQL CVE-2020-14848 Vulnerability (CVE-2020-14848)
MySQL CVE-2021-2046 Vulnerability (CVE-2021-2046)
Internet Information Services Uncontrolled Resource Consumption Vulnerability (CVE-2009-2521)
Liferay Portal Missing Authorization Vulnerability (CVE-2022-39975)