Security
Loading…

CVE-2025-40551

UNKNOWNKnown Exploited
Description

SolarWinds Web Help Desk contains a deserialization of untrusted data vulnerability that could lead to remote code execution, which would allow an attacker to run commands on the host machine. This could be exploited without authentication.

Timeline
Published:February 3rd, 2026 12:00 AM
Last modified:February 3rd, 2026 12:00 AM
Added to KEV:February 3rd, 2026
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

SolarWinds

Products

Web Help Desk
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute