fromTheregister2 months agoInformation securitySolarWinds patches critical RCE - for the third timeSolarWinds issued a third hotfix for a critical (9.8) unauthenticated deserialization RCE in Web Help Desk, which remains patch-bypassed and likely exploitable.
fromSecurityWeek2 months agoInformation securitySolarWinds Makes Third Attempt at Patching Exploited VulnerabilitySolarWinds released a third hotfix for a critical unauthenticated AjaxProxy deserialization RCE (CVE-2025-26399) that bypasses prior patches.
fromSecurityWeek2 months agoInformation securitySolarWinds Makes Third Attempt at Patching Exploited Vulnerability