The Register Home Page

back to article Third time's the charm? SolarWinds (again) patches critical Web Help Desk RCE

SolarWinds on Tuesday released a hotfix - again - for a critical, 9.8-severity flaw in its Web Help Desk IT ticketing software that could allow a remote, unauthenticated attacker to run commands on a host machine.  This is the third time the vendor has tried to fix this flaw, an unauthenticated, AJAXproxy deserialization …

  1. Anonymous Coward
    Anonymous Coward

    More Misdirection..................

    The Help Desk WAS NEVER THE PROBLEM!!

    (1) The bad guys put some malware INSIDE THE SOLARWINDS DEVELOPMENT LIBRARIES..............................

    (2) SolarWinds DID NOT NOTICE

    (3) SolarWinds compiled the malware into their product

    (4) God knows how many paying customers got the malware!!

    ....the Help Desk is the least of anyone's problems!!

  2. VoiceOfTruth Silver badge

    Imagine it

    Yet another backdoor being found in American 'security' software. If it's not poorly coded, it's deliberate. Why does any non-American company use this crap?

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like