Security Advisory
CVE-2018-16792
9.1
CRITICAL
Vulnerability Description
SolarWinds SFTP/SCP server through 2018-09-10 is vulnerable to XXE via a world readable and writable configuration file that allows an attacker to exfiltrate data.
Published Date
December 5, 2018
Official Source
NIST NVD Advisory