CNNVD-202509-027 Information

CNNVD ID

CNNVD-202509-027

CVE-2024-28988

  • CNNVD Published: 2025-09-01

Description (Chinese)

SolarWinds Web Help Desk是美国SolarWinds公司的一套服务台和资产管理软件。该软件支持集中式知识库、IT资产管理、项目和任务管理等功能。 SolarWinds Web Help Desk 12.8.3 HF2版本及之前版本存在代码问题漏洞,该漏洞源于Java反序列化问题,可能导致远程代码执行。

Description (English)

SolarWinds Web Help Desk is a service desk and asset management software for SolarWinds in the United States. The software supports functions such as a centralized knowledge base, IT asset management, project and task management. SolarWinds Web Help Desk 12.8.3 HF2 and previous versions had a code gap, which stemmed from Java’s back-sequencing problem and could lead to remote code implementation.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

SolarWinds

Published

2025-09-01

Last Modified

2026-02-24

References

https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-28988 https://support.solarwinds.com/SuccessCenter/s/article/WHD-12-8-3-Hotfix-3 https://nvd.nist.gov/vuln/detail/CVE-2024-28988 https://access.redhat.com/security/cve/cve-2024-28988

Patch

https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-28988

Share on: