AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-36966

MEDIUM · CVSS 5.4 EPSS 0.42%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-10-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-36966
Severity
MEDIUM
CVSS
5.4
EPSS
0.42%

Original NVD Description

Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter causing insecure direct object reference (IDOR) vulnerability in SolarWinds Platform 2022.3 and previous.